sfaeisin.exe

HIBUN Advanced Edition

Hitachi Solutions, Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘sfaeisin’.
Publisher:
Hitachi Solutions, Ltd.  (signed and verified)

Product:
HIBUN Advanced Edition

Version:
10.50

MD5:
eff19124ad274d6d8bdb04e15ea7cb64

SHA-1:
6dda72324efb052d8edd6e99064366aab02f37b6

SHA-256:
395b7745f28651451939708f6093e83e65746e6a18a536c954356d646c1a2bfd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 11:17:50 AM UTC  (today)

File size:
169.1 KB (173,168 bytes)

Product version:
10-50

Copyright:
Copyright (C) 1999, 2015, Hitachi Solutions, Ltd.

Trademarks:
HIBUN(R)

Original file name:
sfaeisin.exe

File type:
Executable application (Win32 EXE)

Language:
Japanese (Japan)

Common path:
C:\Program Files\hibun-ae\bin\sfaeisin.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/20/2016 7:00:00 AM

Valid to:
10/20/2017 6:59:59 AM

Subject:
CN="Hitachi Solutions, Ltd.", OU=Corporate Planning Group, O="Hitachi Solutions, Ltd.", L=Shinagawa-ku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3B394FDC0B80CC1D67F89A6AC6422D3A

File PE Metadata
Compilation timestamp:
11/24/2016 7:33:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0xDFDF

Entry point:
E8, 71, 32, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 58, 55, 42, 00, 89, 0D, 54, 55, 42, 00, 89, 15, 50, 55, 42, 00, 89, 1D, 4C, 55, 42, 00, 89, 35, 48, 55, 42, 00, 89, 3D, 44, 55, 42, 00, 66, 8C, 15, 70, 55, 42, 00, 66, 8C, 0D, 64, 55, 42, 00, 66, 8C, 1D, 40, 55, 42, 00, 66, 8C, 05, 3C, 55, 42, 00, 66, 8C, 25, 38, 55, 42, 00, 66, 8C, 2D, 34, 55, 42, 00, 9C, 8F, 05, 68, 55, 42, 00, 8B, 45, 00, A3, 5C, 55, 42, 00, 8B, 45, 04, A3, 60, 55, 42, 00, 8D, 45, 08, A3, 6C, 55, 42, 00, 8B...
 
[+]

Entropy:
5.9817

Code size:
88 KB (90,112 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
sfaeisin

Command:
"C:\Program Files\hibun-ae\bin\sfaeisin.exe"


Scan sfaeisin.exe - Powered by Reason Core Security