c8ca1f73985833134cd59c9556b36c8a.dll

FFmpeg

深圳市为爱普信息技术有限公司

Publisher:
FFmpeg Project  (signed by 深圳市为爱普信息技术有限公司)

Product:
FFmpeg

Description:
FFmpeg audio resampling library

Version:
2.0.101

MD5:
c8ca1f73985833134cd59c9556b36c8a

SHA-1:
45d05d4772d39fa98ca942a5bed68b453a1c4bbb

SHA-256:
1432a6f1088390184c80673fb2e1853fbfeb192e8a4a149c4311883b0020f786

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 10:47:15 AM UTC  (today)

File size:
114.9 KB (117,632 bytes)

Product version:
3.0

Copyright:
Copyright (C) 2000-2016 FFmpeg Project

Original file name:
swresample-2.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\c8ca1f73985833134cd59c9556b36c8a.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/26/2016 10:20:32 AM

Valid to:
6/20/2016 11:09:33 AM

Subject:
CN=深圳市为爱普信息技术有限公司, OU=IT Dept., O=深圳市为爱普信息技术有限公司, L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121489EB7D6639A5B0CB949A9C319C024FE

File PE Metadata
Compilation timestamp:
2/29/2016 5:46:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.21

CTPH (ssdeep):
3072:jE/nOZWUkMzcW74u0gW46L68rtknsWoZ9:jE/nOxkMzvdx/8rSnsl9

Entry address:
0x1058

Entry point:
55, 89, E5, 57, 56, 53, 83, EC, 2C, 8B, 75, 08, 8B, 5D, 0C, 8B, 7D, 10, 83, FB, 01, 74, 3D, 89, 7C, 24, 08, 89, 5C, 24, 04, 89, 34, 24, E8, 75, FE, 00, 00, 83, EC, 0C, 85, DB, 75, 19, 8B, 15, 00, D0, 01, 10, 85, D2, 0F, 84, 84, 00, 00, 00, 89, 45, E4, E8, 64, FF, FF, FF, 8B, 45, E4, 8D, 65, F4, 5B, 5E, 5F, C9, C2, 0C, 00, 8D, 76, 00, C7, 04, 24, 80, 00, 00, 00, E8, B0, 07, 01, 00, A3, 00, D0, 01, 10, 85, C0, 74, 63, C7, 00, 00, 00, 00, 00, A3, 04, D0, 01, 10, A1, 20, 93, 01, 10, 85, C0, 74, 14, 89, 7C, 24...
 
[+]

Code size:
79 KB (80,896 bytes)

The file c8ca1f73985833134cd59c9556b36c8a.dll has been seen being distributed by the following URL.

Scan c8ca1f73985833134cd59c9556b36c8a.dll - Powered by Reason Core Security