vsee.exe

vsee

VSee Lab, Inc.

This is a setup program which is used to install the application. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘VSee’. This is installed with VSee. The file has been seen being downloaded from download.vsee.com.
Publisher:
VSee Lab, Inc.  (signed and verified)

Product:
vsee

Version:
13, 0, 0, 1111

MD5:
092b7c5a6cd1220934438d330403ba90

SHA-1:
377dadb79a38dbcd08a250ea8ec6ee273a5661eb

SHA-256:
51b54a896bda60419839c4d4e3e3193162a13299ddd2ceb9c4e91084563b2bf4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 4:46:58 PM UTC  (today)

File size:
21.9 MB (22,967,320 bytes)

Product version:
13, 0, 0, 1111

Copyright:
Copyright 2003-2013 VSee Lab, Inc.

Trademarks:
vsee

Original file name:
vsee.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\vseeinstall\vsee.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/31/2012 12:00:00 AM

Valid to:
10/31/2014 11:59:59 PM

Subject:
CN="VSee Lab, Inc.", O="VSee Lab, Inc.", STREET=3188 Kimlee Dr., L=San Jose, S=CA, PostalCode=95132, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
413C4A0DDDCDDB7C2796AA145A32F943

File PE Metadata
Compilation timestamp:
11/12/2013 2:46:13 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
393216:zyNtnx1pAx9PddH+PfJk3cGpQeubCsXQuPWRgDdV:zyzuPLe56Mb5dV

Entry address:
0x5904DA

Entry point:
E8, A9, 7B, 01, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, A3, 78, 63, 45, 01, 5D, C3, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A1, C4, A3, 40, 01, 33, C5, 89, 45, FC, 53, 8B, 5D, 08, 57, 83, FB, FF, 74, 07, 53, E8, 0B, 7C, 01, 00, 59, 83, A5, E0, FC, FF, FF, 00, 6A, 4C, 8D, 85, E4, FC, FF, FF, 6A, 00, 50, E8, F0, 04, 00, 00, 8D, 85, E0, FC, FF, FF, 89, 85, D8, FC, FF, FF, 8D, 85, 30, FD, FF, FF, 83, C4, 0C, 89, 85, DC, FC, FF, FF, 89, 85, E0, FD, FF, FF, 89, 8D, DC, FD, FF, FF, 89, 95, D8...
 
[+]

Code size:
12.8 MB (13,443,584 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VSee

Command:
"C:\users\{user}\appdata\roaming\vseeinstall\vsee.exe" -quiet_start


The file vsee.exe has been discovered within the following program.

VSee  by VSee Lab Inc
vsee.com
About 2% of users remove it
 
Powered by Should I Remove It?

The file vsee.exe has been seen being distributed by the following URL.

Scan vsee.exe - Powered by Reason Core Security