tbpanel.exe

VDOTool : Display Control Panel

PALIT MICROSYSTEMS (H.K.) LIMITED

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TBPanel’.
Publisher:
Palit Microsystems, Inc.  (signed by PALIT MICROSYSTEMS (H.K.) LIMITED)

Product:
VDOTool : Display Control Panel

Version:
6.1

MD5:
c57f896861c48eb970554c57bf575734

SHA-1:
476bffad38c2175e12a3b58c95dcf0e827187f0e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 10:45:58 PM UTC  (today)

File size:
2.1 MB (2,157,096 bytes)

Product version:
6.1

Copyright:
Copyright (C) 2005

Original file name:
TBPanel

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\vdotool\tbpanel.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/18/2007 4:30:00 AM

Valid to:
12/18/2008 4:29:59 AM

Subject:
CN=PALIT MICROSYSTEMS (H.K.) LIMITED, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PALIT MICROSYSTEMS (H.K.) LIMITED, L=KOWLOON, S=HONG KONG, C=HK

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2659A617F236B9CC5CE5638A352FA811

File PE Metadata
Compilation timestamp:
1/29/2008 7:44:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:YVFAVqF1ztl5m2zzkw1L8qJJOvVz781/udccA7EmCBCS7:YXnL8t78hudBA7EnMS7

Entry address:
0x4D4A9

Entry point:
E8, CB, BF, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 14, 53, FF, 75, 10, 8D, 4D, EC, E8, C9, D1, FF, FF, 33, DB, 39, 5D, 08, 75, 2E, E8, F5, 02, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, A8, E5, FF, FF, 83, C4, 14, 38, 5D, F8, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, BE, 00, 00, 00, 56, 8B, 75, 0C, 3B, F3, 75, 2E, E8, BF, 02, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 72, E5, FF, FF, 83, C4, 14, 38, 5D, F8, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF...
 
[+]

Entropy:
6.0197

Code size:
396 KB (405,504 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TBPanel

Command:
C:\Program Files\vdotool\tbpanel.exe \a


Scan tbpanel.exe - Powered by Reason Core Security