vdrive.exe

DVDFab Virtual Drive

Fengtao Software Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘DVDFab VDrive’.
Publisher:
DVDFab Software  (signed by Fengtao Software Inc.)

Product:
DVDFab Virtual Drive

Description:
DVDFab Virtual Drive Tray

Version:
1.5.1.1

MD5:
ed604ec2c0845f8e51f20ed4cc761e3f

SHA-1:
608e204afbb04bef85a9eafb9efe6bd4757c5bf4

SHA-256:
4307e061d59a7a8739e62182710018c951a20599f71cc865e4ad48ca918aead8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 2:30:23 AM UTC  (today)

File size:
538.4 KB (551,272 bytes)

Product version:
1.5.1.1

Copyright:
Copyright (C) 2014 Fengtao Software

Original file name:
vdrive.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\dvdfab6 bd dvd copy premium and vidon server\dvdfab virtual drive\vdrive.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/14/2015 1:09:45 PM

Valid to:
8/4/2018 11:16:57 AM

Subject:
CN=Fengtao Software Inc., O=Fengtao Software Inc., L=Beijing, S=Beijing, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E2B067DC6C4CC14498C65561316A9EAC

File PE Metadata
Compilation timestamp:
8/29/2014 5:57:30 PM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:YpLGDEZaVT715S4w+95jbdC5CCVCCCCM6JnKez+k5Zy4C/IW/D5EPXMa:YplIVNvV95kJnKez+eZyh/IWKP8a

Entry address:
0x1B317

Entry point:
E8, 81, 82, 00, 00, E9, 89, FE, FF, FF, B8, E2, 40, 42, 00, A3, F8, 6E, 43, 00, C7, 05, FC, 6E, 43, 00, D8, 37, 42, 00, C7, 05, 00, 6F, 43, 00, 8C, 37, 42, 00, C7, 05, 04, 6F, 43, 00, C5, 37, 42, 00, C7, 05, 08, 6F, 43, 00, 2E, 37, 42, 00, A3, 0C, 6F, 43, 00, C7, 05, 10, 6F, 43, 00, 5A, 40, 42, 00, C7, 05, 14, 6F, 43, 00, 4A, 37, 42, 00, C7, 05, 18, 6F, 43, 00, AC, 36, 42, 00, C7, 05, 1C, 6F, 43, 00, 38, 36, 42, 00, C3, 8B, FF, 55, 8B, EC, E8, 96, FF, FF, FF, 83, 7D, 08, 00, 74, 05, E8, 92, 8D, 00, 00, DB...
 
[+]

Entropy:
6.6800

Code size:
210.5 KB (215,552 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DVDFab VDrive

Command:
"C:\Program Files\dvdfab6 bd dvd copy premium and vidon server\dvdfab virtual drive\vdrive.exe"


Scan vdrive.exe - Powered by Reason Core Security