callprocess.dll

Japanese Government

Publisher:
Japanese Government  (signed and verified)

MD5:
0e76c7171e82eed9708cfebc8891d468

SHA-1:
56fcd08ddfdec4c788d0456418aa134236a91223

SHA-256:
d7dda2cd6fb1bf91b8678664b381ac74fe315edb2abf3700f6f04e8f6b41952d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:00:01 PM UTC  (today)

File size:
59.4 KB (60,864 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\.egovfc\callprocess.dll

Digital Signature
Authority:
Japanese Government

Valid from:
11/6/2013 12:00:00 AM

Valid to:
11/5/2016 11:59:59 PM

Subject:
CN=Ministry of Internal Affairs and Communications, OU=Ministry of Internal Affairs and Communications, O=Japanese Government, C=JP

Issuer:
CN=ApplicationCA2 Sub, OU=GPKI, O=Japanese Government, C=JP

Serial number:
333930323439353938343732

File PE Metadata
Compilation timestamp:
10/4/2013 3:20:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
768:iubcqIbwq/hFtlXNX55uZRncWH8bdtFrHt3/Yja7vkbllMV4dbL+E/8:iubcXPTw8bdrtJOlM+dOEE

Entry address:
0x1BA3

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, 32, 2F, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, 55, 8B, EC, 83, EC, 04, 89, 7D, FC, 8B, 7D, 08, 8B, 4D, 0C, C1, E9, 07, 66, 0F, EF, C0, EB, 08, 8D, A4, 24, 00, 00, 00, 00, 90, 66, 0F, 7F, 07, 66, 0F, 7F, 47, 10, 66, 0F, 7F, 47, 20, 66, 0F, 7F, 47, 30, 66, 0F, 7F, 47, 40, 66, 0F, 7F, 47, 50, 66, 0F, 7F, 47, 60, 66, 0F, 7F, 47, 70, 8D, BF, 80, 00, 00, 00, 49, 75, D0, 8B, 7D, FC, 8B, E5, 5D, C3, 55, 8B, EC, 83, EC, 10, 89, 7D...
 
[+]

Entropy:
5.9812

Code size:
36 KB (36,864 bytes)

Scan callprocess.dll - Powered by Reason Core Security