xstarter.exe

xStarter

Agbis Company, LLC

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘xStarter’.
Publisher:
xStarter Solutions  (signed by Agbis Company, LLC)

Product:
xStarter

Description:
Routine computer tasks automation

Version:
1.9.1.115

MD5:
6d1049c66f53de0918d56a3e4885ce03

SHA-1:
370c4bed1e0e088acf47b687eb4ef644d000728e

SHA-256:
7409f205477ae4080434827f3085a68f4f1753accb340ff4db852227c71e5977

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/18/2024 1:18:52 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.ASPack
0.98/18011

File size:
1.9 MB (2,034,744 bytes)

Product version:
1.9.1.115

Copyright:
Copyright © xStarter Solutions, Inc. 2003-2008

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\xstarter\xstarter.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
1/16/2008 1:00:00 AM

Valid to:
1/16/2009 12:59:59 AM

Subject:
CN="Agbis Company, LLC", O="Agbis Company, LLC", STREET="Kuznetskstroevsky 23, 3", L=Novokuznetsk, S=Kemerovo, PostalCode=654000, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
1E60FD8223540AB9E468FBD74875DCD0

File PE Metadata
Compilation timestamp:
7/22/2008 3:03:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:1dFArjxIsV0JvQaK3038yX1btxwYF7wSMFz6jVH/d:1L+jxIxRP3883cgd

Entry address:
0x1000

Entry point:
68, 01, 60, 84, 00, E8, 01, 00, 00, 00, C3, C3, 8B, 9A, A5, 29, B5, 07, 61, BF, E5, C5, 1D, 1F, 67, 37, AE, AF, 00, A5, C5, 0B, 86, 0C, 0B, 21, EE, A7, 24, 1B, 02, 61, B6, BE, CE, 4E, 1B, 3E, 5E, 08, DA, 00, E8, 8C, E7, 4B, 56, 19, 1B, FB, A3, 84, 43, 5E, DB, 97, 34, C6, F8, CC, B2, AF, A2, DA, 42, 3C, 40, 0E, 4B, FA, 31, A8, AC, 91, 2E, BC, E2, 14, 09, 61, 96, 0E, 0D, CC, 7E, FA, 61, 6B, FD, 06, 57, 89, 7D, 7E, 7C, 3A, 1B, FF, 9E, 88, 24, C5, 36, 7A, 7C, 51, F7, 67, 78, 93, C6, 21, 58, A7, A9, 4B, 09, 5B...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
3.4 MB (3,574,272 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
xStarter

Command:
C:\Program Files1\xstarter\xstarter.exe


Scan xstarter.exe - Powered by Reason Core Security