stage_primary.exe

stage_primary

Unlimited Realities Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘DellStage’.
Publisher:
Unlimited Realities Limited  (signed and verified)

Product:
stage_primary

Description:
Dell Stage

Version:
1.4.173.0

MD5:
f74c67de72c86747afa48d76c12d3b1e

SHA-1:
84a3da13c15937281959003c4a7229284eabebdc

SHA-256:
866f963daead873f0b9a4f10a3f30eada182a5a56e3de94e5ce6b12354f5166c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:26:09 AM UTC  (today)

File size:
1.7 MB (1,802,472 bytes)

Product version:
1.4.173.0

Copyright:
Copyright (C) Unlimited Realities 2005-2010

Original file name:
stage_primary

File type:
Executable application (Win32 EXE)

Language:
English (New Zealand)

Common path:
C:\Program Files\dell stage\dell stage\stage_primary.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
4/23/2008 8:00:00 PM

Valid to:
4/24/2011 7:59:59 PM

Subject:
CN=Unlimited Realities Limited, O=Unlimited Realities Limited, STREET=1st Floor, STREET=267 Broadway Avenue, L=Palmerston North, S=Manawatu, PostalCode=5301, C=NZ

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00C95AF6374C7C10B597AECA547BEAD2F4

File PE Metadata
Compilation timestamp:
1/24/2011 9:12:30 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:FEb3czBpARMExgI9P1NI5lGxqaRI8XsMB1exd:0dxgI9P1NI5lGxqaRpXsMB1+d

Entry address:
0x10812B

Entry point:
E8, 78, 04, 00, 00, E9, 36, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 18, B0, 52, 00, 89, 0D, 14, B0, 52, 00, 89, 15, 10, B0, 52, 00, 89, 1D, 0C, B0, 52, 00, 89, 35, 08, B0, 52, 00, 89, 3D, 04, B0, 52, 00, 66, 8C, 15, 30, B0, 52, 00, 66, 8C, 0D, 24, B0, 52, 00, 66, 8C, 1D, 00, B0, 52, 00, 66, 8C, 05, FC, AF, 52, 00, 66, 8C, 25, F8, AF, 52, 00, 66, 8C, 2D, F4, AF, 52, 00, 9C, 8F, 05, 28, B0, 52, 00, 8B, 45, 00, A3, 1C, B0, 52, 00, 8B, 45, 04, A3, 20, B0, 52, 00, 8D, 45, 08, A3, 2C, B0, 52...
 
[+]

Entropy:
6.0279

Code size:
1 MB (1,079,296 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DellStage

Command:
"C:\Program Files\dell stage\dell stage\stage_primary.exe" "C:\Program Files\dell stage\dell stage\start.umj" --startup


Scan stage_primary.exe - Powered by Reason Core Security