demx64.dll

NoVirusThanks Company Srl

Publisher:
NoVirusThanks Company Srl  (signed and verified)

MD5:
625f7f24cb50560c22f17c90b537590a

SHA-1:
4d1b70207f0f0da8310675eb8388c2571c3958f1

SHA-256:
f624f607c91327b56654e29f5902eeb70c13c3a3fba8aa9a24b95513dd47f3dc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:58:23 PM UTC  (today)

File size:
665.2 KB (681,120 bytes)

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\Program Files\novirusthanks\deletion extension monitor\demx64.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/11/2012 5:38:01 PM

Valid to:
3/24/2014 3:31:15 PM

Subject:
E=support@novirusthanks.org, CN=NoVirusThanks Company Srl, O=NoVirusThanks Company Srl, L=Castiglione del Lago, S=Perugia, C=IT

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214F7DE314C1A18C514A11F52BCC29270F

File PE Metadata
Compilation timestamp:
7/27/2013 12:45:36 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:q/gwBjdnkNTDsDcNES8BU55x/VA1dIfktj:q/xKksvrV8Ifktj

Entry address:
0x86370

Entry point:
55, 48, 81, EC, 90, 00, 00, 00, 48, 8B, EC, 48, 89, 4D, 30, 89, 55, 3C, 4C, 89, 45, 40, 90, 48, 8D, 4D, 48, 48, 8D, 15, 76, AC, FF, FF, 4C, 8B, 45, 30, 44, 8B, 4D, 3C, 48, 8B, 45, 40, 48, 89, 44, 24, 20, E8, 58, 9E, F8, FF, 48, 8D, 05, 61, AB, FF, FF, 48, 89, 05, A2, 49, 01, 00, C7, C1, 01, 00, 00, 00, E8, 4F, AB, FF, FF, E8, BA, 3D, F8, FF, C7, 85, 8C, 00, 00, 00, 01, 00, 00, 00, EB, 17, 90, 90, E8, E7, 3F, F8, FF, 85, C0, 0F, 94, C0, 48, 0F, B6, C0, 89, 85, 8C, 00, 00, 00, 90, 8B, 85, 8C, 00, 00, 00, 48...
 
[+]

Entropy:
5.9639

Code size:
533.5 KB (546,304 bytes)

Scan demx64.dll - Powered by Reason Core Security