iphiderlib.dll

Lee Qintguo

It is installed as a Winsock Layered Service Provider (LSP) named “IPHiderProLSP over [MSAFD Tcpip [TCP/IP]]” as a layered chain entry.
Publisher:
Lee Qintguo  (signed and verified)

MD5:
8dea7a3bd387f82837a183a334c840de

SHA-1:
9df71e17428ff2ccba939bf8c6d30bf43e33744b

SHA-256:
c3bb8b0de9db58fa6d67c05ef8eb0fdfeb7bffdbcde996cbf230139eba1afd81

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 5:55:29 PM UTC  (today)

File size:
90.6 KB (92,744 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\safe hide ip\iphiderlib.dll

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
12/4/2014 3:00:00 AM

Valid to:
12/14/2016 3:00:00 PM

Subject:
CN=Lee Qintguo, O=Lee Qintguo, L=tianjin, S=Tianjin, C=CN

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
098081E75C011779E11B16EE65AF7018

File PE Metadata
Compilation timestamp:
12/16/2013 6:39:37 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:MLauqRYStlyx9mdmrGoC7NR1H5ISBg0yVJZ8r0EvY6P:IStarJSKVlVH8r0Bu

Entry address:
0x5073

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 20, 4D, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, B0, 4F, 01, 10, 89, 0D, AC, 4F, 01, 10, 89, 15, A8, 4F, 01, 10, 89, 1D, A4, 4F, 01, 10, 89, 35, A0, 4F, 01, 10, 89, 3D, 9C, 4F, 01, 10, 66, 8C, 15, C8, 4F, 01, 10, 66, 8C, 0D, BC, 4F, 01, 10, 66, 8C, 1D, 98, 4F, 01, 10, 66, 8C, 05, 94, 4F, 01, 10, 66, 8C, 25, 90, 4F, 01, 10, 66, 8C, 2D, 8C, 4F, 01, 10, 9C, 8F, 05, C0, 4F...
 
[+]

Entropy:
6.3749

Code size:
55.5 KB (56,832 bytes)

Winsock2 LSP
Name:
IPHiderProLSP over [MSAFD Tcpip [TCP/IP]]

Type:
Layered Chain Entry

Provider ID:
{D8B567A8-55F2-4C3D-ADA9-03F432A234F0}

Service flags:
0x20066


Scan iphiderlib.dll - Powered by Reason Core Security