PBCORE.DLL

Paquet Builder

Ancestry.com Operations Inc

Publisher:
G.D.G. Software  (signed by Ancestry.com Operations Inc)

Product:
Paquet Builder

Description:
Paquet Builder SFX Core

Version:
1.2.0.0

MD5:
fa21520228b533247171ce018e39a6c1

SHA-1:
7fd0c52b7cab700a909808c15be00adcadc4e110

SHA-256:
06405def8e19750ad969d08c142c39216541ffb7dcf803fde2831c66ebb7eb8a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 3:02:22 PM UTC  (today)

File size:
101.2 KB (103,664 bytes)

Product version:
3.2

Copyright:
Copyright G.D.G. Software

Original file name:
PBCORE.DLL

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\pbcore.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/7/2014 8:00:00 PM

Valid to:
7/7/2017 7:59:59 PM

Subject:
CN=Ancestry.com Operations Inc, OU=Development, O=Ancestry.com Operations Inc, L=Provo, S=Utah, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3D9F15ED5FAA65172DD9B94B94ECC96A

File PE Metadata
Compilation timestamp:
10/29/2014 4:48:28 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.50

CTPH (ssdeep):
3072:5QQObs7PYCSqNTE853tGyLy+QYVbCUzv1ajhov:5QQObs7PYCSiEM72+VbJz

Entry address:
0x1000

Entry point:
83, 7C, 24, 08, 01, 75, 19, 8B, 44, 24, 04, A3, 1C, 70, 01, 10, E8, 38, 00, 00, 00, FF, 35, 1C, 70, 01, 10, E8, 71, 21, 00, 00, 83, 7C, 24, 08, 02, 75, 00, 83, 7C, 24, 08, 00, 75, 10, FF, 35, 1C, 70, 01, 10, E8, 5A, 39, 00, 00, E8, A1, 00, 00, 00, 83, 7C, 24, 08, 03, 75, 00, B8, 01, 00, 00, 00, C2, 0C, 00, 68, 00, 00, 00, 00, 68, 00, 10, 00, 00, 68, 00, 00, 00, 00, E8, D5, 5E, 00, 00, A3, 18, 70, 01, 10, E8, 25, 1F, 01, 00, E8, 10, 15, 01, 00, E8, F7, 13, 01, 00, E8, 6F, 06, 01, 00, E8, B8, FC, 00, 00, E8...
 
[+]

Entropy:
6.5547

Code size:
76 KB (77,824 bytes)

Scan PBCORE.DLL - Powered by Reason Core Security