nvbackend.exe

NVIDIA Update

NVIDIA Corporation

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘NvBackend’.
Publisher:
NVIDIA Corporation  (signed and verified)

Product:
NVIDIA Update

Description:
NVIDIA Update Backend

Version:
10.4.0.4

MD5:
bbcc251cc8f9cfd8f94faea921c1b2d2

SHA-1:
81424cb34a265cf314f331a8208344cb72c151f9

SHA-256:
54313d93bc4793726fd4f55af6d7aed9ed791ec463d67592a5e10ae3782daa39

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 9:28:54 AM UTC  (today)

File size:
1.7 MB (1,794,704 bytes)

Product version:
10.4.0.4

Copyright:
(C) 2013 NVIDIA Corporation. All rights reserved.

Original file name:
backend.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\nvidia corporation\update core\nvbackend.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/6/2014 1:00:00 AM

Valid to:
9/8/2015 12:59:59 AM

Subject:
CN=NVIDIA Corporation, OU=IT-MIS, O=NVIDIA Corporation, L=Santa Clara, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E477535C68343BA71C74D70B9E97D5B

File PE Metadata
Compilation timestamp:
3/3/2015 11:31:08 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0xE8BC4

Entry point:
E8, 1E, BC, 00, 00, E9, 89, FE, FF, FF, B8, 49, 53, 4F, 00, A3, 80, 2D, 57, 00, C7, 05, 84, 2D, 57, 00, 22, 4A, 4F, 00, C7, 05, 88, 2D, 57, 00, D6, 49, 4F, 00, C7, 05, 8C, 2D, 57, 00, 0F, 4A, 4F, 00, C7, 05, 90, 2D, 57, 00, 78, 49, 4F, 00, A3, 94, 2D, 57, 00, C7, 05, 98, 2D, 57, 00, C1, 52, 4F, 00, C7, 05, 9C, 2D, 57, 00, 94, 49, 4F, 00, C7, 05, A0, 2D, 57, 00, F6, 48, 4F, 00, C7, 05, A4, 2D, 57, 00, 82, 48, 4F, 00, C3, 8B, FF, 55, 8B, EC, E8, 96, FF, FF, FF, 83, 7D, 08, 00, 74, 05, E8, 4C, C7, 00, 00, DB...
 
[+]

Entropy:
6.4419

Code size:
1.2 MB (1,242,624 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
NvBackend

Command:
"C:\Program Files\nvidia corporation\update core\nvbackend.exe"