Borlndmm.dll

CodeGear Memory Manager

Beijing Ruidongtiandi Info Tech Co., Ltd.

Publisher:
Embarcadero Technologies, Inc.  (signed by Beijing Ruidongtiandi Info Tech Co., Ltd.)

Product:
CodeGear Memory Manager

Version:
12.0.3155.16733

MD5:
946c1579c5d7398b82969f23cf01ef3d

SHA-1:
56ba183dc1878e64e10d7365fffa929ba59d7a06

SHA-256:
5b03bb913165cf3874b9d7b6f290bfe92974770c8538fe85c13e197174d0d0bf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 3:18:59 AM UTC  (today)

File size:
40 KB (40,992 bytes)

Product version:
12.0

Copyright:
Copyright © 1996,2008 Embarcadero Technologies, Inc.

Original file name:
Borlndmm.Dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\extractfile\borlndmm.dll

Digital Signature
Authority:
WoSign CA Limited

Valid from:
9/25/2014 10:48:21 AM

Valid to:
10/25/2017 10:48:21 AM

Subject:
CN="Beijing Ruidongtiandi Info Tech Co., Ltd.", E=xiamy@17rd.com, O="Beijing Ruidongtiandi Info Tech Co., Ltd.", L=Beijing, S=Beijing, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
2A3B95C0E6DA8B0D900631206B5A21D3

File PE Metadata
Compilation timestamp:
8/21/2008 3:10:52 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x70CC

Entry point:
55, 8B, EC, 83, C4, C4, B8, 4C, 60, FF, 20, E8, 38, CF, FF, FF, E8, EF, EC, FF, FF, E8, F6, EE, FF, FF, C6, 05, B8, 87, FF, 20, 01, E8, 1E, C8, FF, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4317

Developed / compiled with:
Microsoft Visual C++

Code size:
21 KB (21,504 bytes)

Scan Borlndmm.dll - Powered by Reason Core Security