tbpanel.exe

VDOTool : Display Control Panel

PALIT MICROSYSTEMS (H.K.) LIMITED

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TBPanel’.
Publisher:
Palit Microsystems, Inc.  (signed by PALIT MICROSYSTEMS (H.K.) LIMITED)

Product:
VDOTool : Display Control Panel

Version:
6.0

MD5:
b16e15dcc98c329554c6cb35ed26f31b

SHA-1:
800f3fa48fdda767e94468cecf1f9f62abd7f034

SHA-256:
5c614b4153e2e687e666eb27ddc782bb43ed0ac1eb744db3274b9c3e5afca643

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 11:12:50 AM UTC  (today)

File size:
2.1 MB (2,169,384 bytes)

Product version:
6.0

Copyright:
Copyright (C) 2005

Original file name:
TBPanel

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\vdotool\tbpanel.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/17/2007 6:00:00 PM

Valid to:
12/17/2008 5:59:59 PM

Subject:
CN=PALIT MICROSYSTEMS (H.K.) LIMITED, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=PALIT MICROSYSTEMS (H.K.) LIMITED, L=KOWLOON, S=HONG KONG, C=HK

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2659A617F236B9CC5CE5638A352FA811

File PE Metadata
Compilation timestamp:
1/9/2008 1:20:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:jleYbIhFYFZGS1zNwmHCcQIyXAez0bxsSCibk4Kg50CBCS7:TXHd2V0bOSCibgeFMS7

Entry address:
0x500E9

Entry point:
E8, BB, BF, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 14, 53, FF, 75, 10, 8D, 4D, EC, E8, C9, D1, FF, FF, 33, DB, 39, 5D, 08, 75, 2E, E8, F5, 02, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, A8, E5, FF, FF, 83, C4, 14, 38, 5D, F8, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, BE, 00, 00, 00, 56, 8B, 75, 0C, 3B, F3, 75, 2E, E8, BF, 02, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 72, E5, FF, FF, 83, C4, 14, 38, 5D, F8, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF...
 
[+]

Entropy:
6.0233

Code size:
408 KB (417,792 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TBPanel

Command:
"C:\Program Files\vdotool\tbpanel.exe" \a


Scan tbpanel.exe - Powered by Reason Core Security