usbsrservice.exe

USBSRService

Crystal Rich Ltd

It runs as a separate (within the context of its own process) windows Service named “USB Safely Remove Assistant”.
Publisher:
Crystal Rich Ltd  (signed and verified)

Product:
USBSRService

Description:
USB Safely Remove assistant service

Version:
5.1.3.1186

MD5:
5380c77e0c60470e3ff3b025c2a7391c

SHA-1:
2d62314e28719ad5cd68fb9248a272e79bb3a177

SHA-256:
514b987835589abb2555a075e76c430a160d669dfd3fb563c80e31bed68723db

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 2:29:48 PM UTC  (today)

File size:
1.4 MB (1,473,920 bytes)

Product version:
5.1.3.1186

Copyright:
Copyright © 2012 by Crystal Rich Ltd

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\usb safely remove\usbsrservice.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/12/2011 6:00:00 PM

Valid to:
12/12/2012 5:59:59 PM

Subject:
CN=Crystal Rich Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Crystal Rich Ltd, L=Saint Petersburg, S=Saint Petersburg, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
20C53F7597B1AB70BDA6CF9DE847708E

File PE Metadata
Compilation timestamp:
5/28/2012 7:24:37 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:7WBSL9Rx2Ubd8AwI5+EQGyUooxA2qUQrIPbThnsKOyw5qAa:7W40I4KzA5ZIPn+KOJ5ta

Entry address:
0x12EB50

Entry point:
55, 48, 83, EC, 20, 48, 8B, EC, 90, 48, 8D, 0D, B8, 4D, FF, FF, E8, 9B, 1E, EE, FF, E8, B6, 3D, FF, FF, E8, A1, BA, ED, FF, EB, 08, 90, 90, E8, 88, BC, ED, FF, 90, 48, 8D, 65, 20, 5D, C3, 90, 48, 83, EC, 28, E8, 37, B0, ED, FF, 48, 83, C4, 28, C3, CC, CC, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.6963

Code size:
1.2 MB (1,235,968 bytes)

Service
Display name:
USB Safely Remove Assistant

Service name:
USBSafelyRemoveService

Description:
USB Safely Remove uses this service for auxiliary operations. It is not recommended to stop the service while the program is working

Type:
Win32OwnProcess

Group:
Base


Scan usbsrservice.exe - Powered by Reason Core Security