isl alwayson.exe

launch

XLAB D.O.O.

This is a setup program which is used to install the application. The file has been seen being downloaded from www.islonline.net.
Publisher:
XLAB D.O.O.  (signed and verified)

Product:
launch

Version:
1, 0, 0, 1

MD5:
a58c261333fbba61be56d4508acb3b3c

SHA-1:
95a24f86e5d77ec99479c1b7708bcabdd3ea70e0

SHA-256:
689d0255ded2754ca088d69cabdad57692036ea992075f2047aa75275002e0d6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:42:31 PM UTC  (today)

File size:
320.5 KB (328,184 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2010

Original file name:
launch.rc

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\isl alwayson.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/28/2012 9:00:00 PM

Valid to:
6/23/2015 8:59:59 PM

Subject:
CN=XLAB D.O.O., OU=Testing & Deployment, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=XLAB D.O.O., L=Ljubljana, S=Slovenia, C=SI

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2FBD2B36D240D0F74185BB9FE5305112

File PE Metadata
Compilation timestamp:
11/5/2010 6:17:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x2B31

Entry point:
33, C0, 50, 50, 50, 50, FF, 15, 3C, 10, 40, 00, 50, E8, B6, FD, FF, FF, 50, FF, 15, 50, 10, 40, 00, 50, FF, 15, 54, 10, 40, 00, C3, 8B, 11, 3B, 51, 04, 75, 0A, C7, 41, 10, 01, 00, 00, 00, 0C, FF, C3, 8A, 02, 42, 89, 11, C3, 8B, 44, 24, 04, 83, 61, 10, 00, 83, 61, 0C, 00, 56, 89, 11, 03, D0, 83, 49, 08, FF, 6A, 05, 89, 51, 04, 5E, E8, C9, FF, FF, FF, 8B, 51, 0C, 0F, B6, C0, C1, E2, 08, 0B, C2, 4E, 89, 41, 0C, 75, EA, 5E, C2, 04, 00, 55, 8B, EC, 51, 53, 56, 8B, 71, 08, 33, DB, 85, D2, 57, 8B, 79, 0C, 89, 55...
 
[+]

Code size:
13.5 KB (13,824 bytes)

The file isl alwayson.exe has been seen being distributed by the following URL.

http://www.islonline.net/users/programs/download/.../ISL AlwaysOn.exe

Scan isl alwayson.exe - Powered by Reason Core Security