dadb5e13996ce2779e9403ab5b2f5242fea37df1

Intel 825xx Gigabit Platform LAN Network Device, 16.8.0.0, A00

Dell Inc.

It is installed within the Mozilla Firefox web browser as part of an addin/plugin.
Publisher:
Dell Inc.  (signed and verified)

Product:
Intel 825xx Gigabit Platform LAN Network Device, 16.8.0.0, A00

Description:
Dell Update Package: Intel 825xx Gigabit Platform LAN Network Device, 16.8.0.0, A00

Version:
3.0.92.1

MD5:
8bf47bd73299bc156a0da3dab4fe4da9

SHA-1:
ac5ad5fd7f12a4b177bfe883043b3ad04841e08b

SHA-256:
9526379e3f21b5d0f4d141a2ad1251be4e7d3635ff2af1d4286b930a8e7d6efc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 2:16:21 PM UTC  (today)

File size:
11.8 MB (12,403,216 bytes)

Product version:
16.8.0.0

Copyright:
Copyright (C) Dell Inc. 2012. All rights reserved.

Original file name:
DUPFramework.exe

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\mozilla\firefox\profiles\{user}.default-1471442866308\cache2\entries\dadb5e13996ce2779e9403ab5b2f5242fea37df1

Digital Signature
Signed by:

Authority:
Dell Inc.

Valid from:
7/15/2011 2:10:17 AM

Valid to:
5/18/2012 2:00:00 PM

Subject:
CN=Dell Inc, OU=PG, O=Dell Inc., L=Round Rock, S=Texas, C=US

Issuer:
CN=Dell Inc. Enterprise Issuing CA2, O=Dell Inc.

Serial number:
61FCAA5700000000041A

File PE Metadata
Compilation timestamp:
12/20/2011 11:26:27 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:f1W9rPpdQfHNyaGJN/sTcS+uXst2Kj4Ll2YG7521+IohKn+PMNf9wsA:f1W9tGFyaCVeXlO64tS1qdPMN2sA

Entry address:
0x2BB9B3

Entry point:
E8, A5, 18, 01, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 8B, 45, 0C, 83, C0, 0C, 89, 45, FC, 64, 8B, 1D, 00, 00, 00, 00, 8B, 03, 64, A3, 00, 00, 00, 00, 8B, 45, 08, 8B, 5D, 0C, 8B, 6D, FC, 8B, 63, FC, FF, E0, 5B, C9, C2, 08, 00, 58, 59, 87, 04, 24, FF, E0, 58, 59, 87, 04, 24, FF, E0, 58, 59, 87, 04, 24, FF, E0, 8B, FF, 55, 8B, EC, 51, 51, 53, 56, 57, 64, 8B, 35, 00, 00, 00, 00, 89, 75, FC, C7, 45, F8, 2F, BA, 6B, 00, 6A, 00, FF, 75, 0C, FF, 75, F8, FF, 75, 08, E8, B5, E7, 03, 00, 8B, 45, 0C, 8B...
 
[+]

Entropy:
7.6372

Packer / compiler:
PEQuake V0.06

Code size:
3.3 MB (3,466,240 bytes)

Scan dadb5e13996ce2779e9403ab5b2f5242fea37df1 - Powered by Reason Core Security