RtHDVCpl.exe

Realtek HD Audio Manager

Realtek Semiconductor Corp.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘RTHDVCPL’.
Publisher:
Realtek Semiconductor  (signed by Realtek Semiconductor Corp.)

Product:
Realtek HD Audio Manager

Version:
1, 0, 0, 1052

MD5:
9da87cf6074e9b5b2e4e3d687785365e

SHA-1:
ee3a4ae5bd8246d4bc07f4b7d5775a7be0ea9c24

SHA-256:
202841dbff8a0639b7a574eee4dcdeaf58e9a5cd969f8abc7fd29e089f7d24f1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 9:38:50 PM UTC  (today)

File size:
14.3 MB (15,009,280 bytes)

Product version:
1, 0, 0, 1052

Copyright:
2016 (c) Realtek Semiconductor. All rights reserved.

Original file name:
RtHDVCpl.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\realtek\audio\hda\rthdvcpl.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
6/13/2016 5:30:00 AM

Valid to:
1/24/2019 5:30:00 PM

Subject:
CN=Realtek Semiconductor Corp., O=Realtek Semiconductor Corp., L=Hsinchu, S=Taiwan, C=TW, PostalCode=300, STREET="No. 2, Innovation Road II, Hsinchu Science Park", SERIALNUMBER=22671299, OID.1.3.6.1.4.1.311.60.2.1.3=TW, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0320BE3EB866526927F999B97B04346E

File PE Metadata
Compilation timestamp:
12/9/2016 8:30:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x12D519

Entry point:
E8, 82, 65, 00, 00, E9, 17, FE, FF, FF, FF, 35, 28, 78, 5C, 00, E8, 47, 5F, 00, 00, 85, C0, 59, 74, 02, FF, D0, 6A, 19, E8, 6B, 53, 00, 00, 6A, 01, 6A, 00, E8, E2, 66, 00, 00, 83, C4, 0C, E9, E7, 65, 00, 00, 3B, 0D, 20, C7, 5B, 00, 75, 02, F3, C3, E9, F3, 66, 00, 00, 51, C7, 01, BC, BD, 56, 00, E8, EB, 67, 00, 00, 59, C3, 56, 8B, F1, E8, EA, FF, FF, FF, F6, 44, 24, 08, 01, 74, 07, 56, E8, 50, 99, FD, FF, 59, 8B, C6, 5E, C2, 04, 00, 8B, 44, 24, 04, 83, C1, 09, 51, 83, C0, 09, 50, E8, 39, 68, 00, 00, F7, D8...
 
[+]

Entropy:
7.2252

Code size:
1.4 MB (1,462,272 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
RTHDVCPL

Command:
"C:\Program Files\realtek\audio\hda\rthdvcpl.exe" -s


Scan RtHDVCpl.exe - Powered by Reason Core Security