installdevalvr.exe

DevalVR 3D plugin instalation

Phoscode SL

This is a setup program which is used to install the application. This is the uninstaller utility registered in the Windows Control Panel for the program DevalVR plugin for Internet Explorer. The file has been seen being downloaded from www.devalvr.com.
Publisher:
www.devalvr.com  (signed by Phoscode SL)

Product:
DevalVR 3D plugin instalation

Version:
0.9.1.4

MD5:
922d5e6e4c0e555ef0920455c7fd0aed

SHA-1:
e3c1af4642c9cd50d48d1865232dc3144ee0cbbd

SHA-256:
dc70d0bf0a787c2823da5099c5b91b4d0529ddf648ac254d37a192d15b7a2024

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:51:06 PM UTC  (today)

File size:
814.4 KB (833,936 bytes)

Product version:
0.9.1.4

Copyright:
Copyleft (C) 2010 Phoscode s.l.

Original file name:
installNPDevalVR.EXE

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\devalvr\installdevalvr.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
1/17/2013 9:00:00 AM

Valid to:
1/18/2018 8:59:59 AM

Subject:
CN=Phoscode SL, O=Phoscode SL, STREET=Calle Diego de Velazquez 1 - 3 K, L=Villamediana de Iregua, S=La Rioja, PostalCode=26142, C=ES

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B25A4B2751600A88986461D3A9C2DC58

File PE Metadata
Compilation timestamp:
2/11/2014 10:10:54 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:U1C5U8245BpGfcA8IB2nBz6hVb6jVT4BEvO:gPNfcA8WgOhVbqT4L

Entry address:
0x4448

Entry point:
55, 8B, EC, 6A, FF, 68, 18, 59, 40, 00, 68, 12, 48, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, C4, 52, 40, 00, 59, 83, 0D, D4, BF, 40, 00, FF, 83, 0D, D8, BF, 40, 00, FF, FF, 15, C8, 52, 40, 00, 8B, 0D, C8, BF, 40, 00, 89, 08, FF, 15, CC, 52, 40, 00, 8B, 0D, C4, BF, 40, 00, 89, 08, A1, D0, 52, 40, 00, 8B, 00, A3, D0, BF, 40, 00, E8, 58, 03, 00, 00, 39, 1D, 20, 8C, 40, 00, 75, 0C, 68, 0E, 48, 40, 00, FF, 15...
 
[+]

Entropy:
7.9297

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
16 KB (16,384 bytes)

Program Uninstaller
Program name:
DevalVR plugin for Internet Explorer

Uninstall string:
C:\ProgramData\DevalVR\installdevalvr.exe /u


The file installdevalvr.exe has been seen being distributed by the following URL.

http://www.devalvr.com/.../

Scan installdevalvr.exe - Powered by Reason Core Security