usb gamepad.exe

WYunpeng Application

XINGCHEN ELECTRONICS TECHNOLOGY

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘USB Gamepad’.
Publisher:
XINGCHEN ELECTRONICS TECHNOLOGY  (signed and verified)

Product:
WYunpeng Application

Description:
WYunpeng MFC Application

Version:
1, 4, 31010, 483

MD5:
4da99d1887913e4597b2e010f381dca6

SHA-1:
961027f0dbcaab6f766810c03d387759fefead3d

SHA-256:
36a1f369db7134417d7746c2fb350642ac3f88935a3a62c4250a4a057141a57f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:27:20 AM UTC  (today)

File size:
761 KB (779,296 bytes)

Product version:
1, 4, 31010, 483

Copyright:
Copyright (C) 2005

Original file name:
yunpeng.EXE

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\windows\usb vibration\3341\usb gamepad.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/19/2009 5:30:00 AM

Valid to:
5/20/2011 5:29:59 AM

Subject:
CN=XINGCHEN ELECTRONICS TECHNOLOGY, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=XINGCHEN ELECTRONICS TECHNOLOGY, L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6322001EDCA2DA3D157EC89D16DF5C04

File PE Metadata
Compilation timestamp:
4/22/2010 8:03:12 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x115C0

Entry point:
48, 8B, C4, 48, 81, EC, A8, 00, 00, 00, 48, 89, 58, 18, 48, 89, 78, 20, 48, 8D, 48, 88, FF, 15, 1C, EC, 01, 00, 90, FF, 15, 6D, EF, 01, 00, 48, 8B, C8, 33, D2, 41, B8, 94, 00, 00, 00, FF, 15, E4, EB, 01, 00, 48, 8B, D8, 48, 85, C0, 75, 0A, B8, FF, 00, 00, 00, E9, 62, 02, 00, 00, C7, 00, 94, 00, 00, 00, 48, 8B, C8, FF, 15, 13, EF, 01, 00, 85, C0, 75, 1E, FF, 15, 31, EF, 01, 00, 48, 8B, C8, 4C, 8B, C3, 33, D2, FF, 15, A3, EB, 01, 00, B8, FF, 00, 00, 00, E9, 31, 02, 00, 00, 8B, 43, 10, 89, 05, 4C, 9A, 03, 00...
 
[+]

Entropy:
4.5953

Code size:
184.5 KB (188,928 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
USB Gamepad

Command:
C:\windows\usb vibration\3341\usb gamepad.exe -boot


Scan usb gamepad.exe - Powered by Reason Core Security