zipsubvolumcheck.dll

ZipSubVo 动态链接库

Shanda Games

Publisher:
Shanda Games  (signed and verified)

Product:
ZipSubVo 动态链接库

Description:
ZipSubVo 动态链接库

Version:
1, 0, 0, 4

MD5:
9deedfffbd4440b20cfd1a83032ca402

SHA-1:
39ab44ff8e15af8c983e61e1b045f2a936d7f990

SHA-256:
a57dd0c3e4c9a88578bb6ab0b3ea93d304cb89a6b212df6393dd24152b48d095

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 8:17:27 PM UTC  (today)

File size:
68.3 KB (69,944 bytes)

Product version:
1, 0, 0, 4

Copyright:
Copyright (C) 2010

Original file name:
ZipSubVo.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\zipsubvolumcheck.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/26/2010 8:00:00 AM

Valid to:
11/26/2013 7:59:59 AM

Subject:
CN=Shanda Games, OU=Netwrok Security, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Shanda Games, L=ShangHai, S=ShangHai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
022893618A1DFA73D66C50FE4EE6DE61

File PE Metadata
Compilation timestamp:
9/24/2013 4:01:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:fBbB3CFWKJbLuVpmxQmb1mLZUfjwjCvUWKL71H:5bBWJbCVpNmb1mLZULkWUWKLR

Entry address:
0x111EA

Entry point:
E9, B1, 53, 00, 00, E9, 44, 6E, 00, 00, E9, 47, 61, 00, 00, E9, A2, 30, 00, 00, E9, 91, 4B, 00, 00, E9, A8, 61, 00, 00, E9, 83, 53, 00, 00, E9, 1A, 6E, 00, 00, E9, 47, 4B, 00, 00, E9, F4, 60, 00, 00, E9, CF, 0E, 00, 00, E9, A6, 6D, 00, 00, E9, D1, 4A, 00, 00, E9, 70, 4B, 00, 00, E9, CB, 42, 00, 00, E9, 96, 4B, 00, 00, E9, 8B, 4B, 00, 00, E9, EC, 3E, 00, 00, E9, BF, 6D, 00, 00, E9, F2, 47, 00, 00, E9, 3D, 35, 00, 00, E9, 18, 4B, 00, 00, E9, C9, 4A, 00, 00, E9, 40, 6D, 00, 00, E9, 89, 30, 00, 00, E9, AE, 6D...
 
[+]

Entropy:
5.2101

Developed / compiled with:
Microsoft Visual C++ 8.0 (Debug)

Code size:
37.5 KB (38,400 bytes)

Scan zipsubvolumcheck.dll - Powered by Reason Core Security