PBCORE.DLL

Paquet Builder

Ancestry.com Operations Inc

Publisher:
G.D.G. Software  (signed by Ancestry.com Operations Inc)

Product:
Paquet Builder

Description:
Paquet Builder SFX Core

Version:
1.2.0.0

MD5:
fb923c6f443d9cf14acc49541f09bc79

SHA-1:
05960490de2643ca443a9a45d3b96664ca5316d4

SHA-256:
2ae9aef512dcd991ae4e12cfc5a5350c30598553396bb4ced835f314eb77cd07

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 2:36:31 PM UTC  (today)

File size:
101.2 KB (103,664 bytes)

Product version:
3.2

Copyright:
Copyright G.D.G. Software

Original file name:
PBCORE.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\pbcore.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/7/2014 5:00:00 PM

Valid to:
7/7/2017 4:59:59 PM

Subject:
CN=Ancestry.com Operations Inc, OU=Development, O=Ancestry.com Operations Inc, L=Provo, S=Utah, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3D9F15ED5FAA65172DD9B94B94ECC96A

File PE Metadata
Compilation timestamp:
10/29/2014 1:48:28 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.50

CTPH (ssdeep):
3072:4QQObs7PYCSqNTE853tGyLy+QYVbCUzv1ajhov:4QQObs7PYCSiEM72+VbJz

Entry address:
0x1000

Entry point:
83, 7C, 24, 08, 01, 75, 19, 8B, 44, 24, 04, A3, 1C, 70, 01, 10, E8, 38, 00, 00, 00, FF, 35, 1C, 70, 01, 10, E8, 71, 21, 00, 00, 83, 7C, 24, 08, 02, 75, 00, 83, 7C, 24, 08, 00, 75, 10, FF, 35, 1C, 70, 01, 10, E8, 5A, 39, 00, 00, E8, A1, 00, 00, 00, 83, 7C, 24, 08, 03, 75, 00, B8, 01, 00, 00, 00, C2, 0C, 00, 68, 00, 00, 00, 00, 68, 00, 10, 00, 00, 68, 00, 00, 00, 00, E8, D5, 5E, 00, 00, A3, 18, 70, 01, 10, E8, 25, 1F, 01, 00, E8, 10, 15, 01, 00, E8, F7, 13, 01, 00, E8, 6F, 06, 01, 00, E8, B8, FC, 00, 00, E8...
 
[+]

Entropy:
6.5544

Code size:
76 KB (77,824 bytes)

Scan PBCORE.DLL - Powered by Reason Core Security