App.dll

AppCore

Zhenjiang Xinqu Guangcaixingchen Information Technology Co., Ltd

Publisher:
Zhenjiang Nuoya Network Technology Co., Ltd.  (signed by Zhenjiang Xinqu Guangcaixingchen Information Technology Co., Ltd)

Product:
AppCore

Version:
1.00

MD5:
a0b6f44b55e5717a775656f8d98fb377

SHA-1:
c209407ecf3add7e5383899b54bcda8af5f9d215

SHA-256:
27f7bbf728f7f5e686a81068dbd7312dda2140fab8d030c3fe10a734b4030231

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
1/10/2025 6:57:44 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Adware.Downware.2155
9.0.1.05190

File size:
231.9 KB (237,416 bytes)

Product version:
1.00

Original file name:
App.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\{random}.tmp\app.dll

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
10/12/2013 11:47:14 AM

Valid to:
10/14/2014 6:59:22 AM

Subject:
E=masterwannen@sina.com, CN="Zhenjiang Xinqu Guangcaixingchen Information Technology Co., Ltd", O="Zhenjiang Xinqu Guangcaixingchen Information Technology Co., Ltd", L=Zhenjiang, S=Jiangsu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
11FE5B39872580

Registration
CLSID:
{94D38484-94D2-41A1-8CC7-837A924D0E1D}

ProgID:
AppCore.App

COM registered:
Yes

File PE Metadata
Compilation timestamp:
1/9/2014 4:31:25 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:W4yNNJnjy4ke5iOtAa4cx9NXBZ9Q5AOJrmQYend6x/NK01NYCjTkg8E69jT:WdJnxAONH9QNFv7sx/N71NYCjkEKn

Entry address:
0x2344

Entry point:
5A, 68, A8, 44, 03, 11, 68, AC, 44, 03, 11, 52, E9, E7, FF, FF, FF, 00, 00, 00, 40, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 1A, 2F, C3, 8C, 34, 87, EC, 42, A0, E1, 87, 28, F6, 9A, 40, 64, 00, 00, 00, 00, 00, 00, 07, 00, 00, 00, 00, 00, 28, EA, E1, 04, 41, 70, 70, 43, 6F, 72, 65, 00, 00, 08, 41, 00, 20, 08, 41, 00, A0, 00, 00, 00, 88, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 0A, 00, 00, 00, 84, 84, D3, 94, D2, 94, A1, 41, 8C, C7, 83, 7A, 92, 4D, 0E, 1D, 01, 00, 00, 00, 90, 00, 00, 00...
 
[+]

Entropy:
6.0970

Developed / compiled with:
Microsoft Visual Basic v6.0

Code size:
196 KB (200,704 bytes)

Automation Object
CLSID:
{94D38484-94D2-41A1-8CC7-837A924D0E1D}

CLSID name:
AppCore.App


Scan App.dll - Powered by Reason Core Security