VC10Play.EXE

Virtual CD

H und H Software GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘VC10Player’.
Publisher:
H+H Software GmbH  (signed by H und H Software GmbH)

Product:
Virtual CD

Description:
Virtual CD - Player

Version:
10.0.0.631

MD5:
ef36464d3299f95744eda1581ceed049

SHA-1:
e333cbc4c3e892ad20efe5ee44d119c59853c56c

SHA-256:
7f70482d9853948967dc6c4a366a9d4f4231704b6688c8a34cb0d7dfeb512680

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:34:51 AM UTC  (today)

File size:
394.8 KB (404,296 bytes)

Product version:
10, 0, 0, 0

Copyright:
Copyright (C) 2001-2008 by H+H Software GmbH

Original file name:
VC10Play.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\virtual cd v10\system\vc10play.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/3/2009 4:00:00 PM

Valid to:
3/23/2012 4:59:59 PM

Subject:
CN=H und H Software GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=H und H Software GmbH, L=Goettingen, S=Niedersachsen, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6FAC61BAF2235D9B71E62BE58A37DB0A

File PE Metadata
Compilation timestamp:
3/30/2011 12:13:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:SNvIBp7QN+7b37SJjAwUS5HzE9WrY51fY6nOF6Xf11ojsFIoM:SNvIkN+7b3GJjAwUSdE9DZPf1i6Io

Entry address:
0x34537

Entry point:
E8, BC, 03, 00, 00, E9, 36, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, F8, 30, 45, 00, 89, 0D, F4, 30, 45, 00, 89, 15, F0, 30, 45, 00, 89, 1D, EC, 30, 45, 00, 89, 35, E8, 30, 45, 00, 89, 3D, E4, 30, 45, 00, 66, 8C, 15, 10, 31, 45, 00, 66, 8C, 0D, 04, 31, 45, 00, 66, 8C, 1D, E0, 30, 45, 00, 66, 8C, 05, DC, 30, 45, 00, 66, 8C, 25, D8, 30, 45, 00, 66, 8C, 2D, D4, 30, 45, 00, 9C, 8F, 05, 08, 31, 45, 00, 8B, 45, 00, A3, FC, 30, 45, 00, 8B, 45, 04, A3, 00, 31, 45, 00, 8D, 45, 08, A3, 0C, 31, 45...
 
[+]

Entropy:
6.2270

Code size:
234 KB (239,616 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VC10Player

Command:
C:\Program Files\virtual cd v10\system\vc10play.exe