devalvr_installer.exe

DevalVR 3D plugin instalation

Phoscode SL

This is a setup and installation application. This is the uninstaller utility registered in the Windows Control Panel for the program DevalVR plugin for Netscape and compatible browsers. The file has been seen being downloaded from www.devalvr.com.
Publisher:
www.devalvr.com  (signed by Phoscode SL)

Product:
DevalVR 3D plugin instalation

Version:
0, 8, 2, 2

MD5:
915cb1f09263b0adce9dfda59957f846

SHA-1:
27931554a8b028251692ce5e364d996a92ed1b99

SHA-256:
c2190cbd588bd4913215a6a77b22eb88b0b4879427529043593d2e42674df83a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:28:35 AM UTC  (today)

File size:
469.1 KB (480,376 bytes)

Product version:
0, 8, 2, 2

Copyright:
Copyleft (C) 2010 Phoscode s.l.

Original file name:
installNPDevalVR.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\devalvr_installer.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
1/20/2011 4:00:00 AM

Valid to:
1/20/2013 3:59:59 AM

Subject:
CN=Phoscode SL, O=Phoscode SL, STREET=Diego de Velazquez 1 3-K, L=Villamediana de Iregua, S=La Rioja, PostalCode=26142, C=ES

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0097D5EFC49D5D776235E5F9D64C405370

File PE Metadata
Compilation timestamp:
10/30/2011 2:07:28 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:GyDwpoyzTtga+YMWvMFLb+NAixvQexnbERIWIcKMmp7ICufz:LDwpoMaanMBxb4HYRxIcGlYz

Entry address:
0x4438

Entry point:
55, 8B, EC, 6A, FF, 68, 08, 59, 40, 00, 68, 02, 48, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, C0, 52, 40, 00, 59, 83, 0D, A4, C2, 40, 00, FF, 83, 0D, A8, C2, 40, 00, FF, FF, 15, C4, 52, 40, 00, 8B, 0D, 98, C2, 40, 00, 89, 08, FF, 15, C8, 52, 40, 00, 8B, 0D, 94, C2, 40, 00, 89, 08, A1, CC, 52, 40, 00, 8B, 00, A3, A0, C2, 40, 00, E8, 58, 03, 00, 00, 39, 1D, F0, 8E, 40, 00, 75, 0C, 68, FE, 47, 40, 00, FF, 15...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
16 KB (16,384 bytes)

Program Uninstaller
Program name:
DevalVR plugin for Netscape and compatible browsers

Uninstall string:
C:\Program Files (x86)\DevalVR\installnpdevalvr.exe /u


The file devalvr_installer.exe has been seen being distributed by the following URL.

Scan devalvr_installer.exe - Powered by Reason Core Security