DXCaptureReplay.dll

DirectX Capture/Replay

Microsoft Corporation

Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Windows® Operating System

Description:
DirectX Capture/Replay

Version:
6.3.9600.17307 (winblue.141125-1657)

MD5:
2f134f0be9817af32ae964aa7bab94ad

SHA-1:
104947f7ad8b2fc560afe8e2911a4586ee0ac84b

SHA-256:
ac64e80768ae420ec45691207caafe4dd79c162561dca842fad160b0be0d935b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/26/2024 6:23:57 PM UTC  (today)

File size:
5 MB (5,273,576 bytes)

Product version:
6.3.9600.17307

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
DXCaptureReplay.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\common files\microsoft shared\phone tools\12.0\debugger\target\armv4i\dxcapturereplay.dll

Digital Signature
Authority:
Microsoft Corporation

Valid from:
1/9/2014 12:35:36 PM

Valid to:
4/9/2015 1:35:36 PM

Subject:
CN=Microsoft Windows Kits Publisher, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
33000000415EAA1AAB49804ABD000000000041

File PE Metadata
Compilation timestamp:
11/25/2014 8:56:42 PM

OS version:
6.3

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:N1ovu0qCPpbh011ZQH0cuV591YehrTmuLqxB8TRgVnsPs8bu+UQniSJ7y:Yu0hF10cuVP1YehrTmuLqxB8Vy8bcpSQ

Entry address:
0x48F1C1

Entry point:
E9, 78, 48, 0D, F1, 10, 0B, 0C, 46, 01, 2C, 15, 46, 06, 46, 01, D1, 00, F0, 8B, FB, 2A, 46, 21, 46, 30, 46, FF, F7, 76, FE, BD, E8, 78, 88, 49, F2, F0, 3C, C1, F2, 4C, 0C, DC, F8, 00, F0, 49, F2, EC, 3C, C1, F2, 4C, 0C, DC, F8, 00, F0, 0F, B4, 2D, E9, F0, 49, 0D, F1, 14, 0B, 85, B0, 6F, 46, 1E, 46, 14, 46, BC, 63, 88, 46, 05, 46, 3D, 63, 64, 1E, BC, 63, 00, 2C, 05, DB, A5, EB, 08, 05, 3D, 63, 28, 46, B0, 47, F5, E7, 05, B0, BD, E8, F0, 09, 5D, F8, 14, FB, 10, B5, F8, 60, 38, 60, 3B, 68, 1B, 68, 7B, 60, 7B...
 
[+]

Entropy:
6.9635

Packer / compiler:
Xtreme-Protector v1.05

Code size:
4.7 MB (4,902,912 bytes)