AppCore.dll

AppCore

Zhenjiang Nuoya Network Technology Co.,Ltd.

Publisher:
Zhenjiang Nuoya Network Technology Co., Ltd.  (signed by Zhenjiang Nuoya Network Technology Co.,Ltd.)

Product:
AppCore

Version:
1.00

MD5:
f4ddc4f323fe9a8c4db381cb59761253

SHA-1:
ac5b22e5ca1652066b19e2798ca168bf4e478119

SHA-256:
80e0e6632e3ca8ed63f8a1203904759337e96836739dac9e8923140fa81e2546

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 9:12:58 PM UTC  (today)

File size:
183.8 KB (188,224 bytes)

Product version:
1.00

Original file name:
AppCore.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\appcore.dll

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
3/25/2013 2:08:43 PM

Valid to:
3/27/2014 2:40:09 AM

Subject:
E=vip_ppk@qq.com, CN="Zhenjiang Nuoya Network Technology Co.,Ltd.", O="Zhenjiang Nuoya Network Technology Co.,Ltd.", L=Zhenjiang, S=Jiangsu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
1FBD4C9607EA8E

File PE Metadata
Compilation timestamp:
3/26/2013 10:56:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:0vujQLwNOWkEEEEEEEEEEEEEEEEEEEEEEmQzyre8+ls4mfr3sLbBIR5di5/tcNhY:0vuj046yGlshsLdIm5/tMIl

Entry address:
0x1D08

Entry point:
5A, 68, 90, 92, 02, 11, 68, 94, 92, 02, 11, 52, E9, E9, FF, FF, FF, 00, 00, 00, 40, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 3E, 00, B0, 37, FE, BB, 7E, 48, 97, 65, 62, F3, 38, 10, 9A, D3, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 40, 44, FD, 04, 41, 70, 70, 43, 6F, 72, 65, 00, 00, 08, 41, 00, 20, 08, 41, 00, A0, 00, 00, 00, 88, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 0A, 00, 00, 00, EE, 54, 3F, 08, 1C, 1E, 9A, 41, 8F, A3, 8A, FF, C0, 50, 84, A6, 01, 00, 00, 00, 90, 00, 00, 00...
 
[+]

Entropy:
6.0868

Developed / compiled with:
Microsoft Visual Basic v6.0

Code size:
152 KB (155,648 bytes)

Scan AppCore.dll - Powered by Reason Core Security