Express.exe

MedStation Medical Viewer

EXPRIVIA SPA

Publisher:
EXPRIVIA SPA  (signed and verified)

Product:
MedStation® Medical Viewer

Description:
MedStation® Express Medical Viewer

Version:
4,8,388,0

MD5:
d69f21f8a58f431d847d846bca549c8e

SHA-1:
939339d84a18524d47161ba59efce755f6d8fca5

SHA-256:
8c96e3f8461cb9f2aac9524e9fae8201201e8e997b147c022e2c7e04a364853b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 5:55:03 AM UTC  (today)

File size:
1.6 MB (1,705,568 bytes)

Product version:
4,8

Copyright:
© 1994-2008 Exprivia SpA

Trademarks:
MedStation®

Original file name:
Express.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/4/2008 2:00:00 AM

Valid to:
8/5/2011 1:59:59 AM

Subject:
CN=EXPRIVIA SPA, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=EXPRIVIA SPA, L=MOLFETTA, S=BARI, C=IT

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5DF9EAA0BE643899D9839A8F7E891E0E

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:Xbsl+uCE2epx95Ih2nmyks/Vldabv1eq7WI3SQ1UIq63:XI5z+h2p9lsbRKI3F1lq63

Entry address:
0x746B60

Entry point:
60, BE, 00, 10, 9B, 00, 8D, BE, 00, 00, A5, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89...
 
[+]

Packer / compiler:
UPX 2.90LZMA

Code size:
1.6 MB (1,662,976 bytes)

Scan Express.exe - Powered by Reason Core Security