epvphvdp.exe

DisplayLink Core Software 8.0.529.0

DISPLAYLINK

Publisher:
DisplayLink Corp.  (signed by DISPLAYLINK)

Product:
DisplayLink Core Software 8.0.529.0

Description:
Installs DisplayLink Software

Version:
8, 0, 529, 0

MD5:
34d620dab2de0298a13a158f131db6bd

SHA-1:
f65a6aa246200a4eb5a09a101eacf81e52cbe99a

SHA-256:
fcbc9e3f1875b9d97474805d68667f12835721c55b46eca7016f0dcc6c359167

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 11:35:17 AM UTC  (today)

File size:
41.4 MB (43,365,064 bytes)

Product version:
8, 0, 529, 0

Copyright:
Copyright (c) 2003 - 2016 DisplayLink Corp. All rights reserved.

Original file name:
Setup.exe

Language:
English (United Kingdom)

Common path:
C:\users\{user}\appdata\local\temp\epvphvdp.exe.part

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/16/2014 4:00:00 PM

Valid to:
1/2/2018 3:59:59 PM

Subject:
CN=DISPLAYLINK, O=DISPLAYLINK, L=Cambridge, S=Cambridgeshire, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
73D1492854F5A61B01EE5FE8C8A8505B

File PE Metadata
Compilation timestamp:
7/7/2016 2:08:41 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
786432:fcz/RlEMqb6dp6+cCWaMriNtNYXcEC8WEQB8ESfvGnh:C/RlEj+dQ+FWaM2+cqKh

Entry address:
0xD2C32

Entry point:
E8, A4, 0E, 00, 00, E9, 80, FE, FF, FF, 6A, FF, 50, 64, A1, 00, 00, 00, 00, 50, 8B, 44, 24, 0C, 64, 89, 25, 00, 00, 00, 00, 89, 6C, 24, 0C, 8D, 6C, 24, 0C, 50, F2, C3, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, F2, 72, 0B, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, F2, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E7, CC, CC, CC, 80, F9, 40, 73, 15, 80, F9, 20, 73, 06, 0F, AD, D0, D3, EA, C3, 8B, C2, 33, D2, 80, E1, 1F, D3, E8, C3, 33, C0, 33, D2, C3, CC, 80, F9...
 
[+]

Entropy:
7.8490  (probably packed)

Code size:
1.2 MB (1,247,744 bytes)

The file epvphvdp.exe has been seen being distributed by the following 3 URLs.

https://s3.amazonaws.com/plugable/.../DisplayLink USB Graphics Software for Windows 8.0 M0.exe

http://assets.displaylink.com/live/downloads/.../f675_DisplayLink USB Graphics Software for Windows 8.0 M0.exe

Scan epvphvdp.exe - Powered by Reason Core Security