9f06e3c7c72ca76fad4752dd7e94741e.dll

minizip 动态链接库

深圳市为爱普信息技术有限公司

Publisher:

Product:
minizip 动态链接库

Description:
minizip 动态链接库

Version:
1, 0, 0, 1

MD5:
9f06e3c7c72ca76fad4752dd7e94741e

SHA-1:
d43e9494819a9954d37d4aa3674734b6fcb3dcb7

SHA-256:
24b59a5b567dc7666ef9dad523e08a3598b6d43e3aa32bbcb5bf339fb74554bb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 10:30:38 AM UTC  (today)

File size:
25.3 KB (25,936 bytes)

Product version:
1, 0, 0, 1

Copyright:
版权所有 (C) 2011

Original file name:
minizip.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\9f06e3c7c72ca76fad4752dd7e94741e.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/20/2014 4:09:33 PM

Valid to:
6/20/2016 4:09:33 PM

Subject:
CN=深圳市为爱普信息技术有限公司, OU=IT Dept., O=深圳市为爱普信息技术有限公司, L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112135CF84C96DF6BD3F7769B2D3E242EE22

File PE Metadata
Compilation timestamp:
5/31/2011 5:43:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
384:FR8uMPJWrR/CZoG4T/ibcIBLLz0IINleTW4l1J0G9IKJ7Gb5e:QuMhWD1GbcIBLLXINyN0TQab0

Entry address:
0x40F2

Entry point:
6A, 0C, 68, F8, 51, 00, 10, E8, 46, 01, 00, 00, 33, C0, 40, 89, 45, E4, 33, FF, 89, 7D, FC, 8B, 75, 0C, 3B, F7, 75, 0C, 39, 3D, 34, 60, 00, 10, 0F, 84, AC, 00, 00, 00, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, 44, 60, 00, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, E5, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, FF, 01, 00, 00, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
6.5612

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
13 KB (13,312 bytes)

The file 9f06e3c7c72ca76fad4752dd7e94741e.dll has been seen being distributed by the following URL.

Scan 9f06e3c7c72ca76fad4752dd7e94741e.dll - Powered by Reason Core Security