VCDDaemon.exe

Virtual CloneDrive

Elaborate Bytes AG

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘VirtualCloneDrive’.
Publisher:
Elaborate Bytes AG  (signed and verified)

Product:
Virtual CloneDrive

Description:
Virtual CloneDrive Daemon

Version:
5, 4, 5, 1

MD5:
fb627a43ce7cf826a41fbc411065c2a3

SHA-1:
d4886c390a83ace33faa4c2ba6bba8e7e65b5786

SHA-256:
ea629b13f3b40a2959a7d4f0f9e5d6b69f5f7665d5516c5afa3b4ce388c06ddc

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/25/2024 6:53:56 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Apanas [Trj]
160917-0

File size:
127.4 KB (130,456 bytes)

Product version:
5, 4, 5, 1

Copyright:
Copyright © 2001 - 2013 Elaborate Bytes AG

Trademarks:
elby, CloneCD, CloneDVD and Elaborate Bytes are trademarks of Elaborate Bytes AG

Original file name:
VCDDaemon.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\elaborate bytes\virtualclonedrive\vcddaemon.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/27/2012 4:35:36 PM

Valid to:
11/27/2015 6:09:02 PM

Subject:
CN=Elaborate Bytes AG, O=Elaborate Bytes AG, L=Cham, S=Zug, C=CH

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11219EC29016D73F2CC88EB9CC8B4F8E78FB

File PE Metadata
Compilation timestamp:
3/10/2013 7:08:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

Entry address:
0x3FB2

Entry point:
40, 00, 0F, B6, C9, 51, 6A, 00, 52, 50, E8, 1F, F5, FF, FF, C3, 8B, C0, 55, 6A, 00, 89, E5, 6A, 00, 55, 51, 52, 50, E8, E4, F4, FF, FF, 85, C0, 58, 75, 02, 31, C0, 5D, C3, 8D, 40, 00, 55, 55, 89, E5, 6A, 00, 55, 51, 52, 50, E8, 01, F5, FF, FF, 85, C0, 58, 75, 02, 31, C0, 5D, C3, 55, 8B, EC, 83, C4, F8, 53, 56, 57, 33, DB, 89, 5D, F8, 89, 4D, FC, 8B, FA, 8B, D8, 33, C0, 55, 68, 66, 4C, 40, 00, 64, FF, 30, 64, 89, 20, 33, F6, 8D, 45, F8, 8B, D3, E8, 9D, E5, FF, FF, 8B, 45, F8, BA, 00, 04, 00, 40, E8, 34, FF...
 
[+]

Entropy:
5.7658

Code size:
32 KB (32,768 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VirtualCloneDrive

Command:
"C:\Program Files\elaborate bytes\virtualclonedrive\vcddaemon.exe" \s


Scan VCDDaemon.exe - Powered by Reason Core Security