vhui64.exe

VirtualHere Client For Windows

VirtualHere Pty. Ltd.

This is a setup program which is used to install the application. The file has been seen being downloaded from www.virtualhere.com.
Publisher:
VirtualHere Pty. Ltd.  (signed and verified)

Product:
VirtualHere Client For Windows

Description:
VirtualHere USB Sharing

Version:
2.4.8

MD5:
7755ebccd858f190a6c7a4fd746289d6

SHA-1:
b60e9a01775d5da278efa2f547783147e007701f

SHA-256:
296ce9656f6366362e2ad4fcd8fea4ee71cf2c38dbda0efdd60c4fa9069befe2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 8:24:58 AM UTC  (today)

File size:
7.2 MB (7,551,000 bytes)

Product version:
2.4.8

Copyright:
VirtualHere Pty. Ltd.

Original file name:
vhui64.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\vhui64.exe

Digital Signature
Authority:
StartCom Ltd.

Valid from:
3/24/2014 7:20:22 AM

Valid to:
3/23/2016 10:21:42 AM

Subject:
E=mail@virtualhere.com, CN=VirtualHere Pty. Ltd., O=VirtualHere Pty. Ltd., L=Manly, S=New South Wales, C=AU, Description=NixqMW3S42GFLVk6

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0DAE

File PE Metadata
Compilation timestamp:
10/7/2014 9:55:47 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
2.23

CTPH (ssdeep):
196608:b7A2owU254t86/i/IFIoszSvLl07gJUDE5muZASt+6pOE3OqftZAraaMxLlOaJdS:fq9dt8OITzSu7pymKASt+afPC8OaJd3i

Entry address:
0xF74EB0

Entry point:
53, 56, 57, 55, 48, 8D, 35, 6A, 71, 8E, FF, 48, 8D, BE, DB, 4F, 7A, FF, 48, 8D, 87, CC, 9E, F4, 00, FF, 30, C7, 00, 9D, 14, 8F, 16, 50, 57, 31, DB, 31, C9, 48, 83, CD, FF, E8, 50, 00, 00, 00, 01, DB, 74, 02, F3, C3, 8B, 1E, 48, 83, EE, FC, 11, DB, 8A, 16, F3, C3, 48, 8D, 04, 2F, 83, F9, 05, 8A, 10, 76, 21, 48, 83, FD, FC, 77, 1B, 83, E9, 04, 8B, 10, 48, 83, C0, 04, 83, E9, 04, 89, 17, 48, 8D, 7F, 04, 73, EF, 83, C1, 04, 8A, 10, 74, 10, 48, FF, C0, 88, 17, 83, E9, 01, 8A, 10, 48, 8D, 7F, 01, 75, F0, F3, C3...
 
[+]

Code size:
7.1 MB (7,446,528 bytes)

The file vhui64.exe has been seen being distributed by the following URL.

Scan vhui64.exe - Powered by Reason Core Security