VolumeConcierge.exe

Volume Concierge

Hirtal Developments Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘VolumeConcierge’.
Publisher:
Softorino  (signed by Hirtal Developments Ltd.)

Product:
Volume Concierge

Version:
1.2.0

MD5:
8c4fc24a514590283876615214a97567

SHA-1:
1fe055aedc5d9dd1e6a938c69af4025e0873d495

SHA-256:
764cd87e3b42cf48ee72dde3873b94f5398e55262e64c3c58ca6890ba2eb0625

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 12:10:27 AM UTC  (today)

File size:
486.3 KB (497,976 bytes)

Product version:
1.2.0

Copyright:
Copyright © Softorino 2011

Original file name:
VolumeConcierge.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\volume concierge\volumeconcierge.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/7/2012 5:00:00 PM

Valid to:
10/8/2013 4:59:59 PM

Subject:
CN=Hirtal Developments Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Hirtal Developments Ltd., L=Limassol, S=Cyprus, C=CY

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1A28EAE8EB9C86EFC35A04934EB3F7B9

File PE Metadata
Compilation timestamp:
1/10/2013 7:26:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:EhKhEXYy0/jpLaSQmTdtfSl5HgC1WKSlZe30eo:eKhEoyoVaSQmTn6PHWKSXe3ho

Entry address:
0x5BB46

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9051

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
359 KB (367,616 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VolumeConcierge

Command:
"C:\Program Files\volume concierge\volumeconcierge.exe" \autorun


Scan VolumeConcierge.exe - Powered by Reason Core Security