xlive.dll

Microsoft Games for Windows - LIVE

Microsoft Corporation

Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Games for Windows® - LIVE

Description:
Games for Windows - LIVE DLL

Version:
2.0.0687.0 (PANORAMA_V2.00_RTM.090421-2351)

MD5:
8add582a45abb1b430d697281eded3b6

SHA-1:
121bec16a467e8f8d9ce5ccf48f9742da3eecf6b

SHA-256:
c03a3802c4ad3d902ce8fe34a5eccdf37f99902b3455177689a7871270094782

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/26/2024 6:02:59 AM UTC  (today)

File size:
13.6 MB (14,311,680 bytes)

Product version:
2.0.0687.0

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
xlive.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\xlive.dll

Digital Signature
Authority:
Microsoft Corporation

Valid from:
10/23/2008 4:04:32 AM

Valid to:
1/23/2010 4:14:32 AM

Subject:
CN=Microsoft LIVE Gaming for Windows, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft LIVE PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
61025AC700000000000F

File PE Metadata
Compilation timestamp:
4/22/2009 3:19:16 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
196608:Z/PlXEL7bzp74xwaoqNEIECNERY4lkko23ZUe7iw3QerO:fSZ7w1oq69m4lK23q2ir

Entry address:
0x47D623

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 12, E8, C5, D4, CD, FF, 85, C0, 7D, 09, E8, 78, 8F, 16, 00, 33, C0, EB, 21, A1, 80, C7, 41, 00, 56, FF, 75, 10, FF, 75, 0C, FF, 75, 08, FF, D0, 83, 7D, 0C, 00, 8B, F0, 75, 05, E8, 56, 8F, 16, 00, 8B, C6, 5E, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 56, 8B, 70, 04, 81, FE, DC, 07, 00, 00, 75, 14, 8B, 50, 10, 83, 3A, 00, 75, 0C, 83, C0, 08, 50, 52, E8, D2, 33, 00, 00, EB, 30, 81, FE, DF, 07, 00, 00, 75, 0F, 8B, 50, 10, 83, C0, 08, 50, 52, E8, 4A, 40, 00, 00, EB...
 
[+]

Entropy:
7.2178

Code size:
5.9 MB (6,220,288 bytes)

The file xlive.dll has been seen being distributed by the following 8 URLs.

http://s578.chomikuj.pl/File.aspx?e=h-BdZVWJoy3yzrVXVQUaiv82NSw8IY5k4LIcQJwiO6NDZgegp0NQigs7UXIy8HuR6Xbmt_tKjApvONn_5GrKgbVQBL83ZZVn3HXvvI6lgIOMceoHy1TQGh78smFmYJMx&pv=2

http://mlfdll.com/.../xlive.dll

https://mlfdll.com/.../xlive.dll