xaverplayer.exe

Xaver Publishing System

doctronic GmbH & Co. KG

Publisher:
doctronic GmbH & Co. KG  (signed and verified)

Product:
Xaver Publishing System

Description:
Xaver Publishing System - Loader

Version:
1, 0, 0, 1

MD5:
44dbc8e91f29c103e60fa5d964ccaf6a

SHA-1:
1728168b2eae07ddd929eaf29151ac60c00d17bb

SHA-256:
1027981bb4e226e3c16052f092549d5d7b6253341c921b9ce879725cbff38d4a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 7:34:59 AM UTC  (today)

File size:
6.3 MB (6,657,888 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright © 2001-2006

Original file name:
xaver.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\bin\xaverplayer.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/17/2007 11:12:59 AM

Valid to:
7/17/2010 11:12:59 AM

Subject:
E=kueper@doctronic.de, CN=doctronic GmbH & Co. KG, O=doctronic GmbH & Co. KG, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000113D373ACFE

File PE Metadata
Compilation timestamp:
7/8/2009 10:13:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:WZRPqGh4kRcRJgBqIerrCWE13lalZX4PcRLFut3H3H2:Ex+bgBXaToPcJFd

Entry address:
0x470278

Entry point:
E8, F4, 09, 00, 00, E9, 35, FD, FF, FF, FF, 25, 0C, D5, 8D, 00, CC, CC, CC, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, 72, 0A, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E9, CC, FF, 25, 50, D5, 8D, 00, FF, 25, 54, D5, 8D, 00, FF, 25, 58, D5, 8D, 00, FF, 25, 5C, D5, 8D, 00, 6A, 10, 68, 00, C1, A3, 00, E8, F8, 06, 00, 00, 33, C0, 89, 45, E0, 89, 45, FC, 89, 45, E4, 8B, 45, E4, 3B, 45, 14, 7D, 17, FF, 75, 0C, 8B, 4D...
 
[+]

Code size:
4.9 MB (5,095,424 bytes)

Scan xaverplayer.exe - Powered by Reason Core Security