40083f4316ddea820782a100d46d910a.dll

Microsoft Visual Studio .NET

深圳市为爱普信息技术有限公司

Publisher:
Microsoft Corporation  (signed by 深圳市为爱普信息技术有限公司)

Product:
Microsoft® Visual Studio .NET

Description:
ATL Module for Windows (Unicode)

Version:
7.10.6030.0

MD5:
40083f4316ddea820782a100d46d910a

SHA-1:
082bee0308f10d42dc572e6172e00a2f85a27a96

SHA-256:
65e6264f731f475f136a1077a3b81f695cb739fecb0b4a6aa3d2a3601ee51a99

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/26/2025 9:50:16 PM UTC  (today)

File size:
93.3 KB (95,568 bytes)

Product version:
7.10.6030.0

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
ATL71.DLL

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\40083f4316ddea820782a100d46d910a.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/20/2014 4:09:33 PM

Valid to:
6/20/2016 4:09:33 PM

Subject:
CN=深圳市为爱普信息技术有限公司, OU=IT Dept., O=深圳市为爱普信息技术有限公司, L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112135CF84C96DF6BD3F7769B2D3E242EE22

File PE Metadata
Compilation timestamp:
7/12/2006 9:07:28 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:XIlL9T5Xx1ogKMvw5Br7KLKLI+Xe+QnyH4Cc0tR6nGVp/VTbkE0DJ4ZwmroVCJ:otvBOI+FQny5R6nG//SdaZwmsA

Entry address:
0xC872

Entry point:
55, 8B, EC, 56, 8B, 75, 0C, 83, FE, 01, 74, 05, 83, FE, 02, 75, 16, A1, BC, 3B, 13, 7C, 85, C0, 74, 0D, FF, 75, 10, 56, FF, 75, 08, FF, D0, 85, C0, 74, 44, 83, FE, 01, 75, 05, E8, 0D, FD, FF, FF, 57, FF, 75, 10, 56, FF, 75, 08, E8, 5A, 51, FF, FF, 85, F6, 8B, F8, 75, 07, E8, 01, FE, FF, FF, EB, 05, 83, FE, 03, 75, 18, 85, FF, 74, 14, A1, BC, 3B, 13, 7C, 85, C0, 74, 0B, FF, 75, 10, 56, FF, 75, 08, FF, D0, 8B, F8, 8B, C7, 5F, 5E, 5D, C2, 0C, 00, 55, 8B, EC, 83, EC, 10, A1, 74, 37, 13, 7C, 85, C0, 74, 07, 3D...
 
[+]

Entropy:
6.5974

Developed / compiled with:
Microsoft Visual C++

Code size:
51.5 KB (52,736 bytes)

The file 40083f4316ddea820782a100d46d910a.dll has been seen being distributed by the following URL.

Scan 40083f4316ddea820782a100d46d910a.dll - Powered by Reason Core Security