kalydoloader.exe

Kalydo Loader

Eximion B.V.

Publisher:
Eximion B.V.  (signed and verified)

Product:
Kalydo Loader

Description:
kalydoloader

Version:
3, 10, 04, 5

MD5:
b9ec26dece508205135f63c94faf1ee8

SHA-1:
e8fd30e924ef4a83291951f2bae9d5586627f170

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 5:13:48 AM UTC  (today)

File size:
1.7 MB (1,742,224 bytes)

Product version:
3, 10, 04, 5

Copyright:
Eximion B.V. All rights reserved. Kalydo Loader uses 7zip under LGPL 2.1 Licence. Copyright Igor Pavlov. Visit http://www.7zip.org

Original file name:
kalydoloader.exe

File type:
Executable application (Win32 EXE)

Language:
Hollandaca (Hollanda)

Common path:
C:\Documents and Settings\{user}\Application data\kalydo\kalydoplayer\kalydoloader.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/16/2009 2:00:00 AM

Valid to:
12/20/2011 1:59:59 AM

Subject:
CN=Eximion B.V., OU=Technology, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Eximion B.V., L=Eindhoven, S=Noord Brabant, C=NL

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4CD793EB66A40D358DDECFC4C7D8CCEB

File PE Metadata
Compilation timestamp:
3/9/2011 1:09:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:0SWsxU0LEymrpjxKUXpM0Ap/F6808pniO:UsArpjvmJckH

Entry address:
0xEDEB2

Entry point:
E8, A5, B2, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 14, 56, FF, 75, 10, 8D, 4D, EC, E8, 26, F6, FF, FF, 8B, 55, 08, 33, F6, 3B, D6, 75, 2F, E8, 48, 29, 00, 00, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 97, FB, FF, FF, 83, C4, 14, 80, 7D, F8, 00, 74, 07, 8B, 45, F4, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, CD, 01, 00, 00, 53, 8B, 5D, 0C, 3B, DE, 75, 2F, E8, 11, 29, 00, 00, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 60, FB, FF, FF, 83, C4, 14, 80, 7D, F8, 00, 74, 07, 8B, 45, F4, 83, 60, 70...
 
[+]

Packer / compiler:
PEQuake V0.06

Code size:
1.2 MB (1,302,528 bytes)

Scan kalydoloader.exe - Powered by Reason Core Security