nusb3mon.exe

USB 3.0 Monitor

Renesas Electronics Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NUSB3MON’.
Publisher:
Renesas Electronics Corporation  (signed and verified)

Product:
USB 3.0 Monitor

Version:
2.1.12.0

MD5:
99b5be508f306f6c9b584d8f9f95c28d

SHA-1:
4d8217a2c5b75647c3b825a9ef22cf917e020049

SHA-256:
df4834c4567aefd309a833e9c7506c4027787f933d34d5383177dc48934958ae

Scanner detections:
26 / 68

Status:
Clean  (26 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/27/2024 1:32:04 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win32/Slugin
2015.04.08

Avira AntiVirus
W32/Slugin.A
3.6.1.96

avast!
Win32:Patched-HO [Trj]
2014.9-160131

AVG
Win32/Slugin.A
2017.0.2847

Baidu Antivirus
Virus.Win32.Patched.$dj
4.0.3.16131

Bkav FE
W32.OlayFara.PE
1.3.0.6379

Clam AntiVirus
Trojan.Spy-59563
0.98/21511

Comodo Security
TrojWare.Win32.Patched.P
21683

Dr.Web
Win32.Wplugin.1
9.0.1.031

ESET NOD32
Win32/Slugin
10.11438

Fortinet FortiGate
W32/Wplug.A
1/31/2016

F-Prot
W32/Slugin.B
v6.4.7.1.166

F-Secure
Gen:Variant.Buzy.298
11.2016-31-01_1

IKARUS anti.virus
Trojan.Win32.Patched
t3scan.1.8.9.0

K7 AntiVirus
Trojan
13.202.15516

McAfee
W32/Wplugin
5600.6503

Microsoft Security Essentials
Virus:Win32/Slugin.A
1.1.11502.0

Norman
Agent.VDAZ
11.20160131

Qihoo 360 Security
Win32/Virus.a04
1.0.0.1015

Rising Antivirus
PE:Win32.Agent.ey!1474842
23.00.65.16129

Sophos
W32/Slugin-A
4.98

Total Defense
Win32/Slugin.A
37.0.11536

Trend Micro House Call
PE_WPLUG.A
7.2.31

Trend Micro
PE_WPLUG.A
10.465.31

Vba32 AntiVirus
Trojan.Patched.dj
3.12.26.3

ViRobot
Win32.Patched.N[h]
2014.3.20.0

File size:
110.6 KB (113,288 bytes)

Product version:
2.1.12.0

Copyright:
(C) 2011 Renesas Electronics Corporation

Original file name:
nusb3mon.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/22/2010 3:00:00 AM

Valid to:
4/23/2011 2:59:59 AM

Subject:
CN=Renesas Electronics Corporation, OU=Quality Assurancs Division, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Renesas Electronics Corporation, L=Kawasaki, S=Kanagawa, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6DF38C00071DD66C20838DB081346A51

File PE Metadata
Compilation timestamp:
3/25/2011 10:20:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:TDvof5HaHrT5oF74qR/XQ6FvomDr+nEyKVRAPyZYuBGgFzaDPCVf:IfkohXHZ+nEyKoPa5F2S

Entry address:
0x34CE

Entry point:
E8, D1, 21, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 51, 51, 53, 56, 33, F6, 8D, 45, FC, 46, 33, DB, 50, 89, 75, F8, 89, 5D, FC, E8, 68, 08, 00, 00, 83, 7D, FC, 05, 59, 7E, 04, 8B, C6, EB, 42, 57, 53, FF, 15, 18, C1, 40, 00, 8B, 70, 3C, 03, F0, 66, 39, 5E, 06, 0F, B7, 46, 14, 8D, 7C, 30, 18, 76, 23, 57, 68, 9C, C2, 40, 00, E8, 1C, 22, 00, 00, 85, C0, 59, 59, 74, 0E, 0F, B7, 46, 06, 43, 83, C7, 28, 3B, D8, 72, E3, EB, 04, 83, 65, F8, 00, 8B, 45, F8, 5F, 5E, 5B, C9, C3, 56, FF, 35, 08, F0, 40, 00, 8B, 35, 20...
 
[+]

Code size:
44 KB (45,056 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NUSB3MON

Command:
"C:\Program Files\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe"


Scan nusb3mon.exe - Powered by Reason Core Security