pehook.dll

NTI Corporation

Publisher:
NTI Corporation  (signed and verified)

MD5:
3808e56ee11d10fa1ddd3ec84b00e40b

SHA-1:
97a23b3a33ef7c061c5011309596bfc14344eca7

SHA-256:
6a13735313cf8851677454c7ad9277e0187af9da9465315fbac224a7bfa03adf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/7/2024 9:34:52 PM UTC  (today)

File size:
71.7 KB (73,416 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\nti\nti backup now ez 4\pehook.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
7/28/2014 9:00:00 AM

Valid to:
8/28/2015 8:59:59 AM

Subject:
CN=NTI Corporation, O=NTI Corporation, L=Irvine, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
0B15F04909D53B077C949035F35A032D

File PE Metadata
Compilation timestamp:
8/3/2015 6:32:27 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x2881

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 28, 45, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, 35, A4, C0, 00, 10, 57, FF, 35, 88, 2C, 01, 10, FF, D6, FF, 35, 84, 2C, 01, 10, 8B, D8, 89, 5D, FC, FF, D6, 8B, F0, 3B, F3, 0F, 82, 81, 00, 00, 00, 8B, FE, 2B, FB, 8D, 47, 04, 83, F8, 04, 72, 75, 53, E8, 70, 45, 00, 00, 8B, D8, 8D, 47, 04, 59, 3B, D8, 73, 48, B8, 00, 08, 00, 00, 3B, D8, 73, 02, 8B, C3, 03, C3, 3B, C3, 72, 0F, 50, FF...
 
[+]

Entropy:
6.2143

Code size:
40.5 KB (41,472 bytes)

Scan pehook.dll - Powered by Reason Core Security