tbdecrypt.dll

TODO:

Xiamen Tongbu Networks Ltd.

Publisher:
Tongbu  (signed by Xiamen Tongbu Networks Ltd.)

Product:
TODO: <Product name>

Description:
TODO: <File description>

Version:
1.0.0.6

MD5:
8435f906ace4ed5c78c571beaa47cbdf

SHA-1:
78e6acbbd59d45f50f002303d0280cf79d720083

SHA-256:
110e5c75a10c417e2aae8aafa1cab55e2eb1235d1c8558da2537be246e4eb149

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 12:02:53 PM UTC  (today)

File size:
1.3 MB (1,347,288 bytes)

Product version:
1.0.0.6

Copyright:
Copyright (C) 2017

Original file name:
decryptD.dll

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\tbdecrypt.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/28/2016 8:00:00 AM

Valid to:
6/28/2019 7:59:59 AM

Subject:
CN=Xiamen Tongbu Networks Ltd., OU=PC, O=Xiamen Tongbu Networks Ltd., L=Xiamen, S=Fujian, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
32D38ABDDE438F817297BE458EFB4CD4

File PE Metadata
Compilation timestamp:
2/10/2017 11:42:12 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x145086

Entry point:
E9, A7, 19, 00, 00, 0F, 83, 67, F0, FF, FF, 66, 0F, BE, D8, F7, D3, E9, 1E, 70, FF, FF, 55, 53, 45, 52, 33, 32, 2E, 64, 6C, 6C, 00, 48, 0F, CD, 5D, C3, E9, D0, 59, FF, FF, 66, D3, EF, 66, 0F, CF, 8B, 7A, 1C, F6, C4, B6, 38, F3, F9, 48, 01, C7, F9, E9, ED, E7, FF, FF, 66, 41, D3, D8, 48, 8D, 91, EB, 01, 90, BD, 66, 41, D3, D0, E9, 0B, 6A, FF, FF, F8, 84, C0, E9, D3, D6, FF, FF, 00, 00, 43, 72, 79, 70, 74, 43, 41, 54, 41, 64, 6D, 69, 6E, 45, 6E, 75, 6D, 43, 61, 74, 61, 6C, 6F, 67, 46, 72, 6F, 6D, 48, 61, 73...
 
[+]

Entropy:
6.6207

Packer / compiler:
Xtreme-Protector v1.05

Code size:
886 KB (907,264 bytes)

Scan tbdecrypt.dll - Powered by Reason Core Security