usbclerk.exe

FUJIAN RUIJIE NETWORKS CO.,LTD.

It runs as a windows Service named “USB Clerk”.
Publisher:
FUJIAN RUIJIE NETWORKS CO.,LTD.  (signed and verified)

Description:
USB service

Version:
0, 0, 0, 0

MD5:
04b6fcdf9eba6adc8765d54d69e8a569

SHA-1:
81f85f55430e7e64cea97d20da7027ae2007c0f4

SHA-256:
f3688486a58baf09f5c968ad4cfba292128b3d5c4735f23e5883582204e155b1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
6/2/2024 5:46:14 PM UTC  (today)

File size:
3.6 MB (3,761,608 bytes)

Product version:
0, 0, 0, 0

Original file name:
usbservice.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\rcc-admin-tool\rcdvmview\usbclerk.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/4/2016 8:00:00 AM

Valid to:
6/18/2017 7:59:59 AM

Subject:
CN="FUJIAN RUIJIE NETWORKS CO.,LTD.", O="FUJIAN RUIJIE NETWORKS CO.,LTD.", L=fuzhou, S=fujian, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
053BE5094954C2A54D0EB3B55CB44BE7

File PE Metadata
Compilation timestamp:
11/5/2015 10:44:56 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
49152:fTFCsfZRZA6Xn388avVovfLd+Mo4iE8BXQz/hPzxRwPdcORIWoMhOOy9:5Z2ans8GVoLd+Gn8Bc/lw+

Entry address:
0xC79C

Entry point:
48, 83, EC, 28, E8, 5F, C2, 00, 00, 48, 83, C4, 28, E9, 56, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 4C, 8B, D9, 48, 2B, D1, 0F, 82, 9E, 01, 00, 00, 49, 83, F8, 08, 72, 61, F6, C1, 07, 74, 36, F6, C1, 01, 74, 0B, 8A, 04, 0A, 49, FF, C8, 88, 01, 48, FF, C1, F6, C1, 02, 74, 0F, 66, 8B, 04, 0A, 49, 83, E8, 02, 66, 89, 01, 48, 83, C1, 02, F6, C1, 04, 74, 0D, 8B, 04, 0A, 49, 83, E8, 04, 89, 01, 48, 83, C1, 04, 4D, 8B, C8, 49, C1, E9, 05, 75, 51, 4D, 8B, C8, 49, C1, E9...
 
[+]

Entropy:
7.7036  (probably packed)

Code size:
170.5 KB (174,592 bytes)

Service
Display name:
USB Clerk

Service name:
usbclerk

Description:
Enables automatic winusb driver signing & install

Type:
Win32OwnProcess, InteractiveProcess


Scan usbclerk.exe - Powered by Reason Core Security