hicloudBoxC.exe

Chunghwa Telecom hicloud Box(e)

中華電信股份有限公司

It runs as a separate (within the context of its own process) windows Service named “hicloudBoxService”.
Publisher:
Chunghwa Telecom Co., Ltd.  (signed by 中華電信股份有限公司)

Product:
Chunghwa Telecom hicloud Box(e)

Description:
hicloud Box(e) Sync Service

Version:
5.1.1.1005

MD5:
3f6d4f129819f71b15b3fdfa0e1a0aa3

SHA-1:
67a27669e8c47686dfe39d70c3c1991e6e2443c8

SHA-256:
f03b39b3610bbf06947067fb402357a5a7d7a56f0072efe4efa0d83d4ac37c01

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/26/2024 12:54:03 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Ramnit.A
7.11.30.172

File size:
3.8 MB (4,020,568 bytes)

Product version:
5.1.1.1005

Copyright:
Copyright (C) 2014 Chunghwa Telecom Co., Ltd.

Original file name:
hicloudBoxC.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\hicloud box(e)\hicloudboxc.exe

Digital Signature
Authority:
Chunghwa Telecom Co., Ltd.

Valid from:
12/18/2015 2:28:41 PM

Valid to:
12/18/2020 2:28:41 PM

Subject:
SERIALNUMBER=0002101020015931, CN=數據通信分公司雲端系統處, OU=數據通信分公司雲端系統處, O=中華電信股份有限公司, C=TW

Issuer:
OU=Public Certification Authority - G2, O="Chunghwa Telecom Co., Ltd.", C=TW

Serial number:
5A94639AC8E13F997404E3C5DA4CF468

File PE Metadata
Compilation timestamp:
12/31/2015 10:55:09 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:U823MrFrED3qHjYUXbSNB8wTlmO1IgNeG4zdh:/tEB8klmOag

Entry address:
0x23B602

Entry point:
E8, EC, 11, 01, 00, E9, 17, FE, FF, FF, B8, 2F, D3, 64, 00, A3, 40, 2C, 7B, 00, C7, 05, 44, 2C, 7B, 00, 10, CA, 64, 00, C7, 05, 48, 2C, 7B, 00, CE, C9, 64, 00, C7, 05, 4C, 2C, 7B, 00, 02, CA, 64, 00, C7, 05, 50, 2C, 7B, 00, 78, C9, 64, 00, A3, 54, 2C, 7B, 00, C7, 05, 58, 2C, 7B, 00, A9, D2, 64, 00, C7, 05, 5C, 2C, 7B, 00, 8E, C9, 64, 00, C7, 05, 60, 2C, 7B, 00, F8, C8, 64, 00, C7, 05, 64, 2C, 7B, 00, 87, C8, 64, 00, C3, E8, 9B, FF, FF, FF, E8, 5E, 1D, 01, 00, 83, 7C, 24, 04, 00, A3, C0, C6, 7C, 00, 74, 05...
 
[+]

Entropy:
6.3641

Code size:
2.9 MB (2,998,272 bytes)

Service
Display name:
hicloudBoxService

Type:
Win32OwnProcess

Depends on:
RPCSS


Scan hicloudBoxC.exe - Powered by Reason Core Security