xchrgsrv.exe

Accelerated Payment Technologies

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘CAMMonitor’.
Publisher:
Accelerated Payment Technologies  (signed and verified)

Version:
7.1.7.58

MD5:
7cee7cdbe8b3c7fa16158f67a274f8ac

SHA-1:
47ea8b215ba82e95c84f3dfc3474b37381e547c3

SHA-256:
1ed7e9b0bd1855d7a972a0b6a6d92f577f1f33f383ba69ff3a30239b3ffe8f38

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 2:43:11 AM UTC  (today)

File size:
12.4 MB (12,999,816 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\cam commerce solutions\x-charge\application\xchrgsrv.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
11/8/2010 7:00:00 PM

Valid to:
11/8/2012 6:59:59 PM

Subject:
CN=Accelerated Payment Technologies, O=Accelerated Payment Technologies, L=Pleasant Grove, S=Utah, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
08C92EC7D709EFA1B0D8EA7A3140C207

File PE Metadata
Compilation timestamp:
4/19/2012 10:29:48 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:Nf4AB94fZcVEUXCk9yi/j8sBJPLK3UYR3hEkWZa4iurBR:B4g9yZcVEUXCWyi/j8svW3Uu545i8R

Entry address:
0x1000

Entry point:
A1, 2C, 0F, A1, 00, C1, E0, 02, A3, 30, 0F, A1, 00, 57, 51, 33, C0, BF, 50, 5D, DB, 00, B9, 60, AB, DB, 00, 3B, CF, 76, 05, 2B, CF, FC, F3, AA, 59, 5F, 52, 6A, 00, E8, 14, DD, 60, 00, 8B, D0, E8, 6F, 67, 5D, 00, 5A, E8, CD, 66, 5D, 00, E8, A4, 67, 5D, 00, 6A, 00, E8, E9, 79, 5D, 00, 59, 68, F4, 0E, A1, 00, 6A, 00, E8, EE, DC, 60, 00, A3, 34, 0F, A1, 00, 6A, 00, E9, AC, D6, 5D, 00, E9, 3F, 7A, 5D, 00, 33, C0, A0, 21, 0F, A1, 00, C3, A1, 34, 0F, A1, 00, C3, 68, AD, 0B, 00, 00, C3, B9, C0, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.3221

Code size:
6.1 MB (6,352,896 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
CAMMonitor

Command:
C:\ProgramData\cam commerce solutions\x-charge\application\xchrgsrv.exe


Scan xchrgsrv.exe - Powered by Reason Core Security