QBCloser.dll

QBCloser

Intuit Inc

Publisher:
Intuit  (signed by Intuit Inc)

Product:
QBCloser

Version:
1.0.0.0

MD5:
a7eb9ff10871c5df595040b8830382f6

SHA-1:
af2fb9b946ff645c53f66c91c8a42abf07cbd694

SHA-256:
d23ecac08bdb2e3a862d250f0771d6aec29c6ab687753f6bda004bba24e479be

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 12:26:19 AM UTC  (today)

File size:
12.3 KB (12,568 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Intuit 2013

Original file name:
QBCloser.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\qbcloser.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/1/2014 8:00:00 PM

Valid to:
11/1/2015 6:59:59 PM

Subject:
CN=Intuit Inc, OU=666, O=Intuit Inc, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7DD6FB552B950E98C2F54E3CC9D437D7

File PE Metadata
Compilation timestamp:
5/5/2014 5:10:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
192:5zaZOMdfOHFSFpWCUNnYe+PjPSrH77G3br9ZCspE+TMorDZ2H:TIC6vUNnYPLu3kmeMn

Entry address:
0x2FCE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 10, 00, 00, 00, 18, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 30, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 48, 00, 00, 00, 58, 40, 00, 00, EC, 02...
 
[+]

Entropy:
6.3115

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
4 KB (4,096 bytes)

Scan QBCloser.dll - Powered by Reason Core Security