turbohddusb.exe

FNet Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TurboHDD USB’.
Publisher:
FNet Co., Ltd.  (signed and verified)

Description:
TurboHDD USB

Version:
3.2.25.0

MD5:
7614ce0b43ae408b89f520a4f52f2e38

SHA-1:
c17503c2809caed91465cebe43460ce4bbf9b495

SHA-256:
8f1ab67a6867fece4ce393dc9062bab9dc5f4e7ff306d6269801b458f198464e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:08:43 AM UTC  (today)

File size:
4.3 MB (4,542,016 bytes)

Product version:
3.2.25.0

Copyright:
Copyright (C) 2011 FNet

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\turbohdd usb\turbohddusb.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/30/2009 3:30:00 AM

Valid to:
11/12/2011 3:29:59 AM

Subject:
CN="FNet Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="FNet Co., Ltd.", L=Chia Yi, S="Taiwan ", C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
40B6DC1197651A7A9216DD9812D05A80

File PE Metadata
Compilation timestamp:
10/18/2011 12:53:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:WhnYJSqGz2UTYCTnNGpPoU1g58ADEOEpTtTAV0PSU5W7bZ8d0ddxjKiKBr47og7N:AGnADEO7IWw47TK+

Entry address:
0x1B84

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 98, 90, 60, 00, A1, 8B, 90, 60, 00, C1, E0, 02, A3, 8F, 90, 60, 00, 52, 6A, 00, E8, 87, 59, 20, 00, 8B, D0, E8, 22, 5B, 1E, 00, 5A, E8, 80, 5A, 1E, 00, E8, 57, 5B, 1E, 00, 6A, 00, E8, 70, 70, 1E, 00, 59, 68, 34, 90, 60, 00, 6A, 00, E8, 61, 59, 20, 00, A3, 93, 90, 60, 00, 6A, 00, E9, B3, CF, 1E, 00, E9, 9E, 70, 1E, 00, 33, C0, A0, 7D, 90, 60, 00, C3, A1, 93, 90, 60, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, D8, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.7295

Code size:
2 MB (2,129,920 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TurboHDD USB

Command:
C:\Program Files\turbohdd usb\turbohddusb.exe


Scan turbohddusb.exe - Powered by Reason Core Security