climan.exe

VHD License Manager 2011 for Client

Xtreaming Technology Inc.

It runs as a windows Service named “CliMan”.
Publisher:
Xtreaming Technology Inc  (signed by Xtreaming Technology Inc.)

Product:
VHD License Manager 2011 for Client

Description:
climan.exe

Version:
2.0.0.813

MD5:
3be57d7ce641c4a32c32a0a63e62586a

SHA-1:
abe75b8e9d9e31ae83f0e20645dadf893105adfc

SHA-256:
399a0733073109efbd6be30157d1faf56f290ac1341c1b8ee55ea34ef53eceec

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 7:34:59 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
DLOADER.Trojan
9.0.1.07

File size:
217.3 KB (222,544 bytes)

Product version:
2.0.0.813

Copyright:
Copyright © 2008 Xtreaming Technology Inc.

Trademarks:
VHD is a trademark of Xtreaming Technology Inc.

Original file name:
climan.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\xtreaming technology inc\vhd client 2.0\climan.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/22/2010 8:00:00 AM

Valid to:
2/23/2012 7:59:59 AM

Subject:
CN=Xtreaming Technology Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Xtreaming Technology Inc., L=Taichung, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
11EA9B47EDC53577340FA14E147E9132

File PE Metadata
Compilation timestamp:
8/12/2011 7:25:58 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
6144:mXr4BOx84OSFZNNNIQBER9dguhPRNrYU7O:mXr4Bu84OsZNNCQBE/d9PRF7O

Entry address:
0xE90B

Entry point:
E8, 5F, 79, 00, 00, E9, 95, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, 12, 43, 00, 89, 0D, 84, 12, 43, 00, 89, 15, 80, 12, 43, 00, 89, 1D, 7C, 12, 43, 00, 89, 35, 78, 12, 43, 00, 89, 3D, 74, 12, 43, 00, 66, 8C, 15, A0, 12, 43, 00, 66, 8C, 0D, 94, 12, 43, 00, 66, 8C, 1D, 70, 12, 43, 00, 66, 8C, 05, 6C, 12, 43, 00, 66, 8C, 25, 68, 12, 43, 00, 66, 8C, 2D, 64, 12, 43, 00, 9C, 8F, 05, 98, 12, 43, 00, 8B, 45, 00, A3, 8C, 12, 43, 00, 8B, 45, 04, A3, 90, 12, 43, 00, 8D, 45, 08, A3, 9C, 12, 43...
 
[+]

Entropy:
6.3967

Code size:
150 KB (153,600 bytes)

Service
Display name:
CliMan

Service name:
CliMan(x86)

Type:
Win32OwnProcess, InteractiveProcess


Scan climan.exe - Powered by Reason Core Security