TvPlayerPluginCore.dll

Tv Player Plugin

ORZILIA LTD

Publisher:
Orzilia Ltd.  (signed by ORZILIA LTD)

Product:
Tv Player Plugin

Version:
1.5.0.0

MD5:
9686a74ee77291b1fe0e6c9e7855c05a

SHA-1:
3d752277c9cc0e42eb72c0efd3d55dae99b3f749

SHA-256:
6402926f11c48b25db0f4c95d4282a451dd744be27b116e624cd79c6ab36b673

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 4:49:15 PM UTC  (today)

File size:
1018.7 KB (1,043,176 bytes)

Product version:
1.5.0.0

Copyright:
Copyright 2014, Orzilia Ltd.

Original file name:
TvPlayerPluginCore.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\tvplayerplugincore.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/23/2014 7:00:00 AM

Valid to:
6/23/2016 6:59:59 AM

Subject:
CN=ORZILIA LTD, O=ORZILIA LTD, L=Kedar, S=ISRAEL, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
60386E301C6CBADD6E4C852A6D36C8F8

File PE Metadata
Compilation timestamp:
1/26/2016 4:05:42 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:ApR2clgfIdhzduGf+XcxOWmTouPedKHpNck:Ap9Vd9eXcxKTopdKHpNck

Entry address:
0x7645A

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, A4, 79, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 33, C0, 39, 45, 0C, 76, 11, 8B, 4D, 08, 66, 83, 39, 00, 74, 08, 40, 41, 41, 3B, 45, 0C, 72, F2, 5D, C3, 8B, FF, 55, 8B, EC, E8, 09, 4C, 00, 00, 8B, 4D, 08, 89, 48, 14, 5D, C3, E8, FC, 4B, 00, 00, 8B, 48, 14, 69, C9, FD, 43, 03, 00, 81, C1, C3, 9E, 26, 00, 89, 48, 14, 8B, C1, C1, E8, 10, 25, FF, 7F, 00, 00, C3, 8B, FF, 55, 8B, EC, 8B, 45, 08, 0F, B7...
 
[+]

Entropy:
6.3630

Code size:
655 KB (670,720 bytes)

The file TvPlayerPluginCore.dll has been seen being distributed by the following URL.

Scan TvPlayerPluginCore.dll - Powered by Reason Core Security