actionhelper.dll

Reincubate Ltd

Publisher:
Reincubate Ltd  (signed and verified)

MD5:
6f613beedb6b1ca826016f9ac48ec97c

SHA-1:
4ef5cff6cfd8a1226a417f034a69322ea9685857

SHA-256:
0171d484f4eda11d653a6f15e2ad421484c4cbafd4bd38384fe614af7f71f903

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/9/2024 9:28:00 AM UTC  (today)

File size:
22.9 MB (24,054,392 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\roaming\reincubate\iphone backup extractor\actionhelper.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/24/2014 1:00:00 AM

Valid to:
6/23/2016 12:59:59 AM

Subject:
CN=Reincubate Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Reincubate Ltd, L=London, S=London, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
626DBE65C8A3CD1B464DB33676FDCCA1

File PE Metadata
Compilation timestamp:
1/7/2016 6:05:40 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:n3y499hgL8sLVOumHETwYFTcA1Hs/u7MwpZgKO4imaoNA6KOxkBznfAqGhtB9l8w:iAKtOHYw2/1Hs/u7F7gKNimdznkZfpGl

Entry address:
0x167AA64

Entry point:
51, FF, 34, 24, E9, 1B, F2, 6D, 01, 00, 00, 00, 00, 30, 67, 11, 14, 30, 67, 11, 18, 30, 67, 11, 88, AA, 67, 11, 00, 00, 00, 00, 00, 00, 00, 00, 4B, F2, D5, 12, 00, 00, 00, 00, 53, 92, B1, 4E, 4B, 0D, E5, DF, 0B, 56, 2E, 0A, E3, 02, 08, 33, 50, 14, 37, C8, F5, AF, A0, E4, 87, 78, DB, 24, 2D, 67, E6, 17, 20, 64, 1B, E4, E9, AB, 17, E7, DB, C0, 2C, 96, 8D, 72, 1B, 07, B0, 04, C5, 77, 6F, 55, 73, F0, E0, E9, 03, 62, 74, C5, E3, 8A, A5, E4, B1, 3C, 94, 7A, E4, 4A, 07, 15, 56, 12, C4, DF, 6F, 89, 1A, E0, FD, 0E...
 
[+]

Code size:
1.8 MB (1,847,296 bytes)

Scan actionhelper.dll - Powered by Reason Core Security