vhui32.exe

VirtualHere Client For Windows

VirtualHere Pty. Ltd.

This is a setup program which is used to install the application. The file has been seen being downloaded from www.virtualhere.com.
Publisher:
VirtualHere Pty. Ltd.  (signed and verified)

Product:
VirtualHere Client For Windows

Description:
VirtualHere USB Sharing

Version:
2.9.1

MD5:
addd6f00ccde27ac65e9dcf42244d3e4

SHA-1:
47a6289719aa194b72697fcd5186487fef92953d

SHA-256:
0c2c84e899d99e7493104bd5ffa949e09d403ff3b7a10f3f3cab5493db3b9363

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/9/2024 8:54:03 PM UTC  (today)

File size:
5.8 MB (6,093,272 bytes)

Product version:
2.9.1

Copyright:
VirtualHere Pty. Ltd.

Original file name:
vhui32.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\vhui32.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
11/10/2014 6:00:00 PM

Valid to:
1/17/2018 6:00:00 AM

Subject:
CN=VirtualHere Pty. Ltd., O=VirtualHere Pty. Ltd., L=Manly, S=New South Wales, C=AU

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0C5F956BCE16D66A70F60E2819AF50CE

File PE Metadata
Compilation timestamp:
4/23/2015 10:51:59 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.23

CTPH (ssdeep):
98304:kmInfrEwrJDOfi6UYDEkrjn3Lm+CbUVPnxgT6i1HB9d9KrnRSpsdzqBRJx/kHb8a:km0jBROfizYDEk/anohxONfETRWCqBRw

Entry address:
0xFA75A0

Entry point:
60, BE, 15, 30, DF, 00, 8D, BE, EB, DF, 60, FF, C7, 87, CC, 10, F8, 00, E0, 10, 22, FA, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46...
 
[+]

Entropy:
7.8638

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
5.7 MB (5,984,256 bytes)

The file vhui32.exe has been seen being distributed by the following URL.

Scan vhui32.exe - Powered by Reason Core Security