dwall.dll

DefenseWall

Ilya Rabinovich

Publisher:
SoftSphere Technologies  (signed by Ilya Rabinovich)

Product:
DefenseWall

Description:
DefenseWall WinUpdate helper

Version:
3, 1, 0, 0

MD5:
7c05a157bcd65e1187076f8bbc380807

SHA-1:
9e0e92bbacb4c063405f7273023b06f64a3c17ab

SHA-256:
7878a4ad1dda43a015a710c7f8f58b2646ffdecc168637bd40efbd582c819801

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 10:19:15 PM UTC  (today)

File size:
55.4 KB (56,744 bytes)

Product version:
3, 1, 0, 0

Copyright:
Copyright © 2005-2012, Ilya rabinovich, SoftSphere Technologies

Original file name:
dwall.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Windows\System32\dwall.dll

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
3/20/2012 6:29:40 PM

Valid to:
3/22/2014 7:42:32 AM

Subject:
E=info@softsphere.com, CN=Ilya Rabinovich, L=Khimky, S=Moskva Oblast, C=RU, Description=nN5tG4tb6ZbGO8b4

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0595

File PE Metadata
Compilation timestamp:
1/2/2012 3:09:57 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:3BstgeTfIUY+61jLIzg7iDdNg1OLSfloBd5wwxECC+mVVPVQZMrzE:RsueTfa+6ZQ/WWYoBrRECC+qFzE

Entry address:
0x1D91

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, 58, 9C, 00, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, 24, A3, 00, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, E7, FE, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, DF, FA, FF, FF, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, C3, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, B2, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
4.8949

Developed / compiled with:
Microsoft Visual C++

Code size:
20 KB (20,480 bytes)

Scan dwall.dll - Powered by Reason Core Security