configuration.binary64.dll

qTrace

QASymphony, LLC.

Publisher:
QASymphony LLC  (signed by QASymphony, LLC.)

Product:
qTrace

Description:
Configuration.Binary

Version:
1.2.0.151

MD5:
fcde3a7203f38fe9f49ac91ce4fdf480

SHA-1:
32a20a49fd620997d617d80caa92c5b5f0c9a2ad

SHA-256:
66010e215cca62607a820181d7db83f75076cd20635eabf43dc38b4fd3643e6c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 1:28:15 PM UTC  (today)

File size:
291.1 KB (298,128 bytes)

Product version:
1.2.0.151

Copyright:
Copyright © 2012 QASymphony LLC. All rights reserved.

Original file name:
Configuration.Binary

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\apps\qasymphony\qtrace\configuration.binary64.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/3/2012 4:17:35 PM

Valid to:
11/22/2013 2:25:17 PM

Subject:
E=info@qasymphony.com, CN="QASymphony, LLC.", OU=Information & Technology, O="QASymphony, LLC.", L=Sandy Springs, S=Georgia, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11210B15D67BF437161631AAE8A8D853E971

File PE Metadata
Compilation timestamp:
3/14/2013 2:32:28 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:AP/ck6d+EsvT4/ofMiKJsGxLiT3rfEkk4OudOML2v+xSP3gcOwWNV8b2INi4jaDS:Md6d+ESTzpGcTbfEkk4OudZEk02IV8

Entry address:
0x268F0

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 63, 2A, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, A7, FE, FF, FF, CC, CC, CC, 40, 53, 48, 83, EC, 20, 33, DB, 4D, 8B, D0, 4D, 85, C9, 75, 0E, 48, 85, C9, 75, 0E, 48, 85, D2, 75, 20, 33, C0, EB, 2F, 48, 85, C9, 74, 17, 48, 85, D2, 74, 12, 4D, 85, C9, 75, 05, 66, 89, 19, EB, E8, 4D, 85, C0, 75, 1C, 66, 89, 19, E8, 95, 0F, 00, 00, BB...
 
[+]

Entropy:
5.8253

Code size:
205 KB (209,920 bytes)

Scan configuration.binary64.dll - Powered by Reason Core Security