ExtDownload.dll

ExtDownload Module

Beijing ShengjingWanwei Technology Co.,Ltd.

Publisher:
Phoenix Studio  (signed by Beijing ShengjingWanwei Technology Co.,Ltd.)

Product:
ExtDownload Module

Description:
ExtDownload

Version:
1, 0, 4, 1004

MD5:
465bc8322c5153d3c66dbadbdbca6f81

SHA-1:
6fb19eee48d276d5fb0f0665c2e6f191c1f464c2

SHA-256:
36ec6c0352a774ef9e6fe73c0426cc8ca0473e658ccb128947a0167f3fe94796

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:31:46 PM UTC  (today)

File size:
317.7 KB (325,368 bytes)

Product version:
1, 0, 4, 1004

Copyright:
Copyright 2010

Original file name:
ExtDownload.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\theworld 3\extensions\extdownload\extdownload.dll

Digital Signature
Authority:
WoSign, Inc.

Valid from:
7/6/2009 8:00:00 AM

Valid to:
7/7/2011 7:59:59 AM

Subject:
CN="Beijing ShengjingWanwei Technology Co.,Ltd.", OU=Class 3 - for Microsoft Authenticode Signing, O="Beijing ShengjingWanwei Technology Co.,Ltd.", L=Beijing, S=Beijing, C=CN

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
7F4334D8EA8895329121C97D8FDF3AD3

File PE Metadata
Compilation timestamp:
7/16/2010 5:09:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:Axe0STLBkWYiCRYlw3hJurDf4UxQhxGktDAvyv28/SVNe03PN:V3UiCGlifWD4UxQ3HAqYVfF

Entry address:
0x38925

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, 90, BE, 04, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, 98, BE, 04, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, 15, FF, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, EB, 9F, FE, FF, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, F1, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, E0, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
6.1867

Developed / compiled with:
Microsoft Visual C++ 6.0

Code size:
228 KB (233,472 bytes)

Scan ExtDownload.dll - Powered by Reason Core Security