MyHiddenFolders.exe

My Hidden Folders

TrustSoft Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘MyHiddenFolders’.
Publisher:
TrustSoft Inc  (signed by TrustSoft Inc.)

Product:
My Hidden Folders

Version:
2008.01.0003

MD5:
72584446eea9e51aeb03903efe6fe55e

SHA-1:
b5c7ede3f0516863759d99876887ec80292656df

SHA-256:
b37cd23be579be577d07b5266f732c86f20b703628da3eb772e4ec0019d7b5af

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/7/2024 5:26:42 AM UTC  (today)

Scan engine
Detection
Engine version

Quick Heal
(Suspicious) - DNAScan
3.16.-

File size:
369.5 KB (378,376 bytes)

Product version:
2008.01.0003

Copyright:
TrustSoft Inc

Original file name:
MyHiddenFolders.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\my hidden folders\myhiddenfolders.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
8/16/2006 7:00:00 PM

Valid to:
8/16/2008 6:59:59 PM

Subject:
CN=TrustSoft Inc., OU=SECURE APPLICATION DEVELOPMENT, O=TrustSoft Inc., L=Houston, S=Texas, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3504783891DAFC340A3341E6FFCF49DF

File PE Metadata
Compilation timestamp:
1/8/2008 12:15:05 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:4wo88ecs8FFPmEZbO0lJvTKZCumRuEQaBrAyCPl7P/soqLwZH4H2yUuhLcmbWa:4PTzFFO0lJvkyzQ6GldqLx2y1Fcmqa

Entry address:
0x1000

Entry point:
68, 01, 90, 4A, 00, E8, 01, 00, 00, 00, C3, C3, D4, 61, F3, 3B, 0C, 51, A7, 6A, 2F, 9F, 62, 9E, 7D, F5, A9, 9B, 6A, 6B, 50, 65, 2C, FB, AD, 9E, 03, A3, 8F, 01, AC, D8, 96, CD, A9, 5A, B1, F2, 0D, 95, 6C, 60, 59, BD, C2, 27, A7, C4, 26, C6, 27, A2, BE, 9F, 83, 29, 13, B5, E7, 87, 28, 9C, 63, 64, 88, 9F, DD, 85, BE, A9, 26, E4, 00, D9, 0A, B5, 73, F5, D8, 93, 01, 6A, 97, 6A, E8, 31, 5C, 8D, ED, 5A, F8, 3A, 94, E3, 8D, 12, 06, EC, 7F, 51, CD, 14, B0, C2, 0E, 51, 14, 5A, 94, 56, 68, 8F, 54, 3A, C6, 5A, 1A, D2...
 
[+]

Entropy:
7.9317

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
636 KB (651,264 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
MyHiddenFolders

Command:
"C:\Program Files\my hidden folders\myhiddenfolders.exe" \startup


Scan MyHiddenFolders.exe - Powered by Reason Core Security