XAPOFX1_2.dll

Microsoft DirectX for Windows

Microsoft Corporation

Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® DirectX for Windows®

Description:
XAPOFX

Version:
9.25 (DXSDK_NOV08.081015-0400)

MD5:
5118908849106d6dd8f465c794f934b0

SHA-1:
624a68ea6bf352a5b445db78d2c3b4bcc98432ba

SHA-256:
9dc1f6430f20a982ef117ec48222d8ebc67c19e63a7310897ebdb24b8334f0ce

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/27/2024 7:39:41 PM UTC  (today)

File size:
69.3 KB (70,992 bytes)

Product version:
9.25.1467.0

Copyright:
Copyright (c) Microsoft Corporation. All rights reserved.

Original file name:
XAPOFX1_2.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Digital Signature
Authority:
Microsoft Corporation

Valid from:
8/23/2007 2:23:13 AM

Valid to:
2/23/2009 1:33:13 AM

Subject:
CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
610F784D000000000003

File PE Metadata
Compilation timestamp:
10/15/2008 1:27:47 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
768:Y67GrYDf/xgB0mGc540RYvu0mSyak70clVVtLVXrTHl4TFdKw8bBS7VEBBqYdRj5:zGrYtZYMuOyV0cJ7TlPsu9dRyG68C1Q

Entry address:
0x40F5

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 93, 05, 00, 00, 5D, E9, 96, FD, FF, FF, CC, CC, CC, CC, CC, FF, 25, 98, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 8C, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 84, 10, 40, 00, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 7C, 10, 40, 00, CC, CC, CC, CC, CC, 3B, 0D, C0, 00, 41, 00, 75, 02, F3, C3, E9, D2, 05, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, 53, 56, 57, 8B, 54, 24, 10, 8B, 44, 24, 14, 8B, 4C, 24, 18, 55, 52, 50, 51, 51, 68, E8, 41, 40, 00, 64, FF, 35, 00...
 
[+]

Code size:
52.5 KB (53,760 bytes)

The file XAPOFX1_2.dll has been seen being distributed by the following URL.