x1filemonitor.exe

X1 Professional Client

X1 Technologies, Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘X1FileMonitor.exe’.
Publisher:
X1 Technologies, Inc.  (signed and verified)

Product:
X1 Professional Client

Version:
4054by

MD5:
875ff3725328a8608f432eed6441d287

SHA-1:
af6f6f37913ec7d5cc671a66d36d49358548f422

SHA-256:
b094f0113af01798cfa82c9332392560187bdc692e2b7aa4574c7df555520506

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:41:56 PM UTC  (today)

File size:
390.7 KB (400,056 bytes)

Product version:
6.7.2.0003

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\x1\x1filemonitor.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
6/15/2009 7:00:00 PM

Valid to:
8/29/2011 6:59:59 PM

Subject:
CN="X1 Technologies, Inc.", OU=SECURE APPLICATION DEVELOPMENT, O="X1 Technologies, Inc.", L=Pasadena, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
18146BC25DC200FC98CA6BC2A1879479

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:BMWfizIZWYuUAQUUfSe+WylCzSdhxkuHyve7+Dd1k23/SovaCbIJ8oXtClV2we:BLfiEZ5pFUESsqCGhkXen8eoV2we

Entry address:
0x4F88C

Entry point:
55, 8B, EC, 83, C4, EC, 53, 33, C0, 89, 45, F0, 89, 45, EC, B8, C4, F5, 44, 00, E8, B7, 6D, FB, FF, 33, C0, 55, 68, A1, F9, 44, 00, 64, FF, 30, 64, 89, 20, 8D, 45, EC, E8, 5D, FC, FF, FF, 8B, 45, EC, 8D, 55, F0, E8, 5E, AB, FB, FF, 8B, 4D, F0, B8, 70, 4E, 45, 00, BA, B8, F9, 44, 00, E8, AC, 46, FB, FF, 6A, 00, E8, D1, 70, FB, FF, A1, 70, 4E, 45, 00, E8, 13, 48, FB, FF, 50, 6A, FF, 6A, 00, E8, 55, 6E, FB, FF, 8B, D8, E8, 26, 6F, FB, FF, 3D, B7, 00, 00, 00, 74, 05, 83, F8, 05, 75, 0C, 85, DB, 74, 7C, 53, E8...
 
[+]

Entropy:
6.5640

Developed / compiled with:
Microsoft Visual C++

Code size:
314.5 KB (322,048 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
X1FileMonitor.exe

Command:
C:\Program Files2\x1\x1filemonitor.exe


Scan x1filemonitor.exe - Powered by Reason Core Security