vdrive.exe

DVDFab Virtual Drive

Fengtao Software Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘DVDFab VDrive’.
Publisher:
Fengtao Software Inc.  (signed and verified)

Product:
DVDFab Virtual Drive

Description:
DVDFab Virtual Drive Tray - x64

Version:
1.3.4.0

MD5:
851c5b2ac79a98ce27ef1a71101207f1

SHA-1:
a45452243ffc0c941ddd52adeea8677f38ec0d9d

SHA-256:
f39b4d9166cbb808646b39e0b56703b9939b53206412e6b1f421a20ca70c704f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:24:45 PM UTC  (today)

File size:
341.9 KB (350,080 bytes)

Product version:
1.3.4.0

Copyright:
Copyright (C) 2001-2012 Fengtao Software Inc. All rights reserved.

Original file name:
vdrive.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\dvdfab virtual drive\vdrive.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/5/2009 4:38:40 AM

Valid to:
8/5/2012 4:38:40 AM

Subject:
E=service@dvdfab.com, CN=Fengtao Software Inc., O=Fengtao Software Inc., C=CN

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000122E89CF68E

File PE Metadata
Compilation timestamp:
1/4/2012 10:33:31 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:OPriRVv+VgIPuxFGJefnrJCmntuulOdjTf06UmM0XXUcvcadC5CCVCCCCM6x:OPriRVWOIPuxAuEmntk9tXXUwTdC5CCn

Entry address:
0x285AC

Entry point:
48, 83, EC, 28, E8, FF, 99, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 4C, 8B, C9, 45, 33, C0, 8A, 01, 48, FF, C1, 41, 3A, C0, 75, F6, 48, FF, C9, 49, 3B, C9, 74, 04, 38, 11, 75, F4, 38, 11, 4C, 0F, 44, C1, 49, 8B, C0, C3, CC, CC, 48, 8D, 05, 01, BF, 01, 00, C3, 40, 53, 48, 83, EC, 20, 8B, 05, 04, 0A, 02, 00, BB, 14, 00, 00, 00, 85, C0, 75, 07, B8, 00, 02, 00, 00, EB, 05, 3B, C3, 0F, 4C, C3, 48, 63, C8, BA, 08, 00, 00, 00, 89, 05, E1, 09, 02, 00, E8, B0, 9A, 00, 00, 48, 89, 05, B5, F9, 01, 00, 48...
 
[+]

Code size:
265 KB (271,360 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DVDFab VDrive

Command:
"C:\Program Files\dvdfab virtual drive\vdrive.exe"


Scan vdrive.exe - Powered by Reason Core Security