DriverBackup.exe
- File Path:
C:\Program Files (x86)\Glary Utilities 5\DriverBackup.exe
- Description: Driver Backup/Restore
Screenshot
Hashes
Type |
Hash |
MD5 |
5ABFE96EE190437FF2572F2226C00976 |
SHA1 |
6EBA721FBDBB18D7676B0517C2BBAE9E3118446F |
SHA256 |
2E8D96EF7201C86FA133A012D2A0F2EA4EDD03B598EBC7A36EE60FF7D0D721DE |
SHA384 |
8591ABE7E0A6C2692A8D0E0460BB8419901DFA7292BE95A23A556F4AD67C926C8F320A62A173F99AF1184F1232414D43 |
SHA512 |
3C3A26686FB20E10B2461481910988C4773CDA5BBF66E7734CE33C5672D9AA9FCBFD3021253F45A8B49EE985C11081EB3E2C786D4AE6E99E04F1854E463881E1 |
SSDEEP |
6144:/3HvDnYIwGo94UTqAL4TA0NEB/aMQXmnlBGGyObmx+cX/fWAOWtAOHoJTq5MLi8L:/3HvDnYIwx4UH8TjE0YwtvfjATti82s |
IMP |
B0E3C17C82AF59C913ED33C308457CBB |
PESHA1 |
0453C459D5FBADC239C28E27715058157D2A62BE |
PE256 |
4D39A0C93C21F7C27A2A8D457CD833DEB79A5D204EBB5E558D409EAC5646AC4F |
Runtime Data
Child Processes:
MemfilesService.exe
Window Title:
Driver Manager
Open Handles:
Path |
Type |
(R-D) C:\Windows\Fonts\StaticCache.dat |
File |
(R-D) C:\Windows\System32\en-US\setupapi.dll.mui |
File |
(R-D) C:\Windows\SystemResources\shell32.dll.mun |
File |
(R-D) C:\Windows\SysWOW64\en-US\user32.dll.mui |
File |
(RW-) C:\Program Files (x86)\Glary Utilities 5 |
File |
(RW-) C:\Windows |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9625_none_508ef7e4bcbbe589 |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_11b1e5df2ffd8627 |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.508_none_429cdbca8a8ffa94 |
File |
(RW-) C:\xCyclopedia |
File |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters |
Section |
\Sessions\1\Windows\Theme2547664911 |
Section |
\Windows\Theme3854699184 |
Section |
Loaded Modules:
Path |
C:\Program Files (x86)\Glary Utilities 5\DriverBackup.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
0F05AE21CDC17B9F3CF09D7BFC659BA3
- Thumbprint:
362EBB303E088105BDCC07D94E6B7875D30C0D06
- Issuer: CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US
- Subject: CN=Glarysoft LTD, O=Glarysoft LTD, S=Beijing, C=CN
- Original Filename: DriverBackup.exe
- Product Name: Glary Utilities
- Company Name: Glarysoft Ltd
- File Version: 5, 17, 1, 4
- Product Version: 5.17.1.4
- Language: Chinese (Simplified, China)
- Legal Copyright: Copyright (c) 2003-2020 Glarysoft Ltd
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/68
- VirusTotal Link: https://www.virustotal.com/gui/file/2e8d96ef7201c86fa133a012d2a0f2ea4edd03b598ebc7a36ee60ff7d0d721de/detection/
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.