ZhUtil.dll

Yantai Daocaoren Network Technology Co.,Ltd.

Publisher:

Version:
1.0.0.4

MD5:
b37034f8d679fca29c2883bbf39817dd

SHA-1:
c79452ce883178d701b71ae4edecda12f28c9d21

SHA-256:
17358a8dc304895745fd112777908ea4edce869bc796fa03096ec91a1f307bb8

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/5/2024 2:21:50 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
riskware program Program.Unwanted.432
9.0.1.05190

File size:
58.9 KB (60,352 bytes)

Product version:
1.0.0.4

Copyright:
Copyright (C) 2014

Original file name:
ZhUtil.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Program Files\sulangdesk\zhutil.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/3/2014 8:00:00 AM

Valid to:
6/3/2017 7:59:59 AM

Subject:
CN="Yantai Daocaoren Network Technology Co.,Ltd.", O="Yantai Daocaoren Network Technology Co.,Ltd.", L=Yantai, S=Shandong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6D19470478FF3868FDD9B0445697B86C

File PE Metadata
Compilation timestamp:
9/26/2014 8:14:53 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x80CB

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 19, 04, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 90, D1, 00, 10, 89, 0D, 8C, D1, 00, 10, 89, 15, 88, D1, 00, 10, 89, 1D, 84, D1, 00, 10, 89, 35, 80, D1, 00, 10, 89, 3D, 7C, D1, 00, 10, 66, 8C, 15, A8, D1, 00, 10, 66, 8C, 0D, 9C, D1, 00, 10, 66, 8C, 1D, 78, D1, 00, 10, 66, 8C, 05, 74, D1, 00, 10, 66, 8C, 25, 70, D1, 00, 10, 66, 8C, 2D, 6C, D1, 00, 10, 9C, 8F, 05, A0, D1...
 
[+]

Entropy:
6.6288

Code size:
30.5 KB (31,232 bytes)

Scan ZhUtil.dll - Powered by Reason Core Security