hdinspector.exe

Altrix Software Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘HDInspector.exe’.
Publisher:
Altrixsoft  (signed by Altrix Software Ltd)

Description:
Hard Drive Inspector Professional

Version:
2, 61, 441, 0

MD5:
24fdf7a6952f8ae4311fad81f357aeb3

SHA-1:
194770ffd883868b07d757566ac4530a8960ac20

SHA-256:
378e3729bb2899d1f2db0a64496799ec8a1754e45fa23250171a4890d6ddaa59

Scanner detections:
4 / 68

Status:
Clean  (4 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/7/2025 5:42:00 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Altrix Software Ltd
2017.0.2821

Comodo Security
Heur.Suspicious
20244

Quick Heal
(Suspicious) - DNAScan
2.16.14.00

Trend Micro House Call
Suspicious_GEN.F47V1106
7.2.57

File size:
978.8 KB (1,002,248 bytes)

Product version:
2, 61, 441, 0

Copyright:
Altrixsoft. Copyright (C) 2002-2007. All rights reserved.

Original file name:
HDDStateInspector.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\hard drive inspector\hdinspector.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/24/2007 5:00:00 AM

Valid to:
4/24/2008 4:59:59 AM

Subject:
CN=Altrix Software Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Altrix Software Ltd, L=Irkutsk, S=Irkutskaya oblast, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
39CA7A0F27245073095B2B721EC63C9D

File PE Metadata
Compilation timestamp:
12/2/2007 5:01:50 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
12288:cTlzoRXKw5294cdXZQR8v5B173kOEqa6Tfp5oDA8kfWy0dYc79PA88ZBKDy9WeNa:cCRa9r1TBW6zp5mjmGVvAn5QiFGWS

Entry address:
0x233001

Entry point:
60, E8, 03, 00, 00, 00, E9, EB, 04, 5D, 45, 55, C3, E8, 01, 00, 00, 00, EB, 5D, BB, ED, FF, FF, FF, 03, DD, 81, EB, 00, 30, 23, 00, 83, BD, 22, 04, 00, 00, 00, 89, 9D, 22, 04, 00, 00, 0F, 85, 65, 03, 00, 00, 8D, 85, 2E, 04, 00, 00, 50, FF, 95, 4D, 0F, 00, 00, 89, 85, 26, 04, 00, 00, 8B, F8, 8D, 5D, 5E, 53, 50, FF, 95, 49, 0F, 00, 00, 89, 85, 4D, 05, 00, 00, 8D, 5D, 6B, 53, 57, FF, 95, 49, 0F, 00, 00, 89, 85, 51, 05, 00, 00, 8D, 45, 77, FF, E0, 56, 69, 72, 74, 75, 61, 6C, 41, 6C, 6C, 6F, 63, 00, 56, 69, 72...
 
[+]

Entropy:
7.8096

Packer / compiler:
ASPack v2.12

Code size:
1.7 MB (1,740,800 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
HDInspector.exe

Command:
C:\Program Files\hard drive inspector\hdinspector.exe


Scan hdinspector.exe - Powered by Reason Core Security