potion.exe

elixxier Software GmbH

Publisher:
elixxier Software GmbH  (signed and verified)

Version:
4.0.0.62010

MD5:
71a0ab0131ffe16f4f21115f72fb21de

SHA-1:
62f8024aeb8b8372225c329057a95dbbbe3e84d6

SHA-256:
4112b76a07c6b3d4ec5c3bfebce56580d79e869c63ebb1d10dc96b01b83980d7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/21/2017 10:50:37 AM UTC  (today)

File size:
9.6 MB (10,084,728 bytes)

Product version:
4.0.0.62010

File type:
Executable application (Win32 EXE)

Language:
English (United States d'America)

Digital Signature
Authority:
StartCom Ltd.

Valid from:
9/11/2012 4:03:34 AM

Valid to:
9/12/2014 2:52:52 PM

Subject:
E=dauner@elixxier.com, CN=elixxier Software GmbH, O=elixxier Software GmbH, L=Stuttgart, S=Baden-Wuerttemberg, C=DE, Description=kIGXayCt8pyWz6x7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0747

File PE Metadata
Compilation timestamp:
11/12/2012 8:52:32 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:b1+uwTlx7WBPrGE2dEVG7nRVTzEYTq5N/ApFUpZ3TgTtUq6et7W4NxHHQC/GGVdo:b1ix7WBPrGE2dtLRVTzEYTq5N/ApFU/R

Entry address:
0x3B0D93

Entry point:
E8, 25, 0C, 01, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 57, 33, DB, 6A, 07, 33, C0, 59, 8D, 7D, E4, 89, 5D, E0, F3, AB, 39, 5D, 14, 75, 18, E8, 3C, F1, FF, FF, C7, 00, 16, 00, 00, 00, E8, 23, 61, 00, 00, 83, C8, FF, E9, BC, 00, 00, 00, 8B, 7D, 10, 56, 8B, 75, 0C, 3B, FB, 74, 1C, 3B, F3, 75, 18, E8, 15, F1, FF, FF, C7, 00, 16, 00, 00, 00, E8, FC, 60, 00, 00, 83, C8, FF, E9, 94, 00, 00, 00, C7, 45, EC, 42, 00, 00, 00, 89, 75, E8, 89, 75, E0, 81, FF, FF, FF, FF, 3F, 76, 09, C7, 45, E4, FF...
 
[+]

Code size:
7.5 MB (7,832,576 bytes)

Scan potion.exe - Powered by Reason Core Security