earthdesk7-5.exe

EarthDesk

Xeric Design, Ltd.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘EarthDesk’.
Publisher:
Xeric Design, Ltd.  (signed and verified)

Product:
EarthDesk

Description:
EarthDesk7

Version:
7.0.1.4396

MD5:
812c924d83fe46a1e62dba0705d9425d

SHA-1:
daa75068af8d5a8f68c0f9a3c473c4e84e38fc94

SHA-256:
806945cf52d1bb2f7d4704c6665958e5cfd6a52237ee6f2c9abcf59aac3f301b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/6/2024 6:28:26 PM UTC  (today)

File size:
35.8 MB (37,537,320 bytes)

Product version:
7.0.1.4396

Copyright:
(c) 1992-2016 under license to Xeric Design, Ltd. All rights reserved.

Original file name:
EarthDesk7.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\earthdesk-win64-701-112c\earthdesk7-5.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/28/2016 4:00:00 PM

Valid to:
11/29/2018 3:59:59 PM

Subject:
CN="Xeric Design, Ltd.", O="Xeric Design, Ltd.", STREET=865 Tahoe Blvd., STREET=Suite 214, L=Incline Village, S=Nevada, PostalCode=89451, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F28D5CC3B068D9A579439060535194A5

File PE Metadata
Compilation timestamp:
12/18/2016 3:21:32 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x311D90

Entry point:
48, 83, EC, 28, E8, 57, 0C, 00, 00, 48, 83, C4, 28, E9, 82, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 20, 48, 8B, D9, 33, C9, FF, 15, 13, 17, 05, 00, 48, 8B, CB, FF, 15, 02, 17, 05, 00, FF, 15, C4, 1A, 05, 00, 48, 8B, C8, BA, 09, 04, 00, C0, 48, 83, C4, 20, 5B, 48, FF, 25, 80, 19, 05, 00, 48, 89, 4C, 24, 08, 48, 83, EC, 38, B9, 17, 00, 00, 00, E8, 5B, 6A, 00, 00, 85, C0, 74, 07, B9, 02, 00, 00, 00, CD, 29, 48, 8D, 0D, 03, 85, 19, 00, E8, CA, 01, 00, 00, 48, 8B, 44, 24, 38, 48, 89, 05, EA, 85, 19, 00, 48, 8D...
 
[+]

Entropy:
7.7550  (probably packed)

Code size:
3.4 MB (3,545,088 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
EarthDesk

Command:
"C:\users\{user}\downloads\earthdesk-win64-701-112c\earthdesk7-5.exe" \hide


Scan earthdesk7-5.exe - Powered by Reason Core Security