sfaeifin.exe

HIBUN Advanced Edition

Hitachi Solutions, Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘sfaeifin’.
Publisher:
Hitachi Solutions, Ltd.  (signed and verified)

Product:
HIBUN Advanced Edition

Version:
10.0

MD5:
b87e40ff6fad8adeb844c1b211568e69

SHA-1:
b08007891ec84ac4ece7fa2791c00c9d78c403f3

SHA-256:
36bee598d9cf89fb06b409e53f3d84f551837fe38294c43064db908730451318

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:22:35 PM UTC  (today)

File size:
253.9 KB (259,976 bytes)

Product version:
10-00

Copyright:
Copyright (C) 1999, 2012, Hitachi Solutions, Ltd.

Trademarks:
HIBUN(R)

Original file name:
sfaeifin.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\hibun-ae\bin\sfaeifin.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/24/2011 6:00:00 PM

Valid to:
10/24/2012 5:59:59 PM

Subject:
CN="Hitachi Solutions, Ltd.", OU=Product Life cycle Management Department, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Hitachi Solutions, Ltd.", L=shinagawa-ku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
67A4B2E816733888EC8EBB94034C3BF5

File PE Metadata
Compilation timestamp:
4/13/2012 2:35:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:Ku/wUJ0biAO53OIQl394h0DzZ7qQoEfaiRBP10bvGJA5q9ZxhdeOZiF0kjZ+4nEF:X/fJLt3OIQ34h0DzRNfF90b+tSjzEF

Entry address:
0x1B3B5

Entry point:
E8, A7, 53, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, F8, CF, 43, 00, 89, 0D, F4, CF, 43, 00, 89, 15, F0, CF, 43, 00, 89, 1D, EC, CF, 43, 00, 89, 35, E8, CF, 43, 00, 89, 3D, E4, CF, 43, 00, 66, 8C, 15, 10, D0, 43, 00, 66, 8C, 0D, 04, D0, 43, 00, 66, 8C, 1D, E0, CF, 43, 00, 66, 8C, 05, DC, CF, 43, 00, 66, 8C, 25, D8, CF, 43, 00, 66, 8C, 2D, D4, CF, 43, 00, 9C, 8F, 05, 08, D0, 43, 00, 8B, 45, 00, A3, FC, CF, 43, 00, 8B, 45, 04, A3, 00, D0, 43, 00, 8D, 45, 08, A3, 0C, D0, 43, 00, 8B...
 
[+]

Entropy:
5.9515

Code size:
156 KB (159,744 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
sfaeifin

Command:
"C:\Program Files\hibun-ae\bin\sfaeifin.exe"


Scan sfaeifin.exe - Powered by Reason Core Security