xda_memory express v5.3.32_se.exe

XDA_Memory Express

Xerox Corporation

Publisher:
Xerox Corporation   (signed by Xerox Corporation)

Product:
XDA_Memory Express

Description:
Download Manager For Memory Express

Version:
9, 5, 0, 44

MD5:
3de3062393b1e59eb38bad1e85e08d2d

SHA-1:
31888629d0227c10ba3a7c9bc6b0f261c91d80f6

SHA-256:
cf55471cb6804b5f891b6a749f3777beb549f251d10cc062430d55bf9bd88449

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 7:04:35 PM UTC  (today)

File size:
834.7 KB (854,720 bytes)

Product version:
9, 5, 0, 44

Copyright:
Copyright © Xerox Corporation 2009 - 2015

Original file name:
DownloadManager.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
COMODO CA Limited

Valid from:
12/8/2015 5:00:00 PM

Valid to:
12/8/2016 4:59:59 PM

Subject:
CN=Xerox Corporation, O=Xerox Corporation, STREET=45 Glover Ave, L=Norwalk, S=Connecticut, PostalCode=06850, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008FAC8AFEE4A4F49435CC636A3428AC3D

File PE Metadata
Compilation timestamp:
9/13/2014 8:37:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:Og8o5u6iUNTOeV+u4qRlSH/Oqdu0QS2R8Y+:Og8tEkLLqRlSH5aSg+

Entry address:
0x3856F

Entry point:
55, 8B, EC, 6A, FF, 68, 70, 98, 44, 00, 68, 6C, C1, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 68, 51, 44, 00, 33, D2, 8A, D4, 89, 15, BC, 50, 46, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, B8, 50, 46, 00, C1, E1, 08, 03, CA, 89, 0D, B4, 50, 46, 00, C1, E8, 10, A3, B0, 50, 46, 00, 33, F6, 56, E8, 5A, 3B, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 9A, 39, 00, 00, FF, 15, 64, 51, 44, 00, A3, 44, 67, 46, 00, E8...
 
[+]

Entropy:
7.3404

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
272 KB (278,528 bytes)

The file xda_memory express v5.3.32_se.exe has been seen being distributed by the following URL.

Scan xda_memory express v5.3.32_se.exe - Powered by Reason Core Security