VolumeConcierge.exe

Volume Concierge

Hirtal Developments Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘VolumeConcierge’.
Publisher:
Softorino  (signed by Hirtal Developments Ltd.)

Product:
Volume Concierge

Version:
1.2.6

MD5:
9b78ffd4cd499b361edc3afb4a13c858

SHA-1:
1c88f7251c535b480085bcebed06c9f541698253

SHA-256:
d0aa7a2d74e8a708d941aae4a8969017894a311531852743f4475d1abb27648d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:58:10 AM UTC  (today)

File size:
461.8 KB (472,888 bytes)

Product version:
1.2.6

Copyright:
Copyright © Softorino 2011

Original file name:
VolumeConcierge.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\volume concierge\volumeconcierge.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/13/2013 8:00:00 AM

Valid to:
11/13/2015 7:59:59 AM

Subject:
CN=Hirtal Developments Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Hirtal Developments Ltd., L=Limassol, S=Cyprus, C=CY

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0EEBC23385A7F892B0B5456DA585089A

File PE Metadata
Compilation timestamp:
11/6/2013 5:50:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:e1oeqo4VZPJiUKSlZe30eL7FKSlZe30e7:e1oxZBiUKSXe3hlKSXe3h7

Entry address:
0x55986

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 05, 00, 0C, 00...
 
[+]

Entropy:
7.6102

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
334.5 KB (342,528 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VolumeConcierge

Command:
"C:\Program Files\volume concierge\volumeconcierge.exe" \autorun


Scan VolumeConcierge.exe - Powered by Reason Core Security