femx64.dll

NoVirusThanks File Extension Monitor x64 Hook Module

NoVirusThanks Company Srl

Publisher:
NoVirusThanks Company Srl  (signed and verified)

Product:
NoVirusThanks File Extension Monitor x64 Hook Module

Version:
1.0.0.0

MD5:
ff55b11c049f59ce6bb4b20ed152548c

SHA-1:
064f492f215594c25bc07ec263918f784be7ed87

SHA-256:
55d313d03009db834fc41ff45d824b1dae27095f68a59b01f8f2c117bb8f9521

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 2:09:20 PM UTC  (today)

File size:
316.7 KB (324,256 bytes)

Product version:
1.0.0.0

Copyright:
NoVirusThanks Company Srl

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\novirusthanks\file extension monitor\femx64.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/11/2012 5:38:01 PM

Valid to:
3/24/2014 3:31:15 PM

Subject:
E=support@novirusthanks.org, CN=NoVirusThanks Company Srl, O=NoVirusThanks Company Srl, L=Castiglione del Lago, S=Perugia, C=IT

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214F7DE314C1A18C514A11F52BCC29270F

File PE Metadata
Compilation timestamp:
7/27/2013 5:13:43 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:vFh6hwO5SPxYHjexk3dHkujIMoMFy2LtU:vqtaxYDEk3dHkUPy2LtU

Entry address:
0x3F4B0

Entry point:
55, 48, 81, EC, 90, 00, 00, 00, 48, 8B, EC, 48, 89, 4D, 30, 89, 55, 3C, 4C, 89, 45, 40, 90, 48, 8D, 4D, 48, 48, 8D, 15, 86, C6, FF, FF, 4C, 8B, 45, 30, 44, 8B, 4D, 3C, 48, 8B, 45, 40, 48, 89, 44, 24, 20, E8, 28, DF, FC, FF, 48, 8D, 05, C1, C5, FF, FF, 48, 89, 05, 5A, C8, 00, 00, C7, C1, 01, 00, 00, 00, E8, AF, C5, FF, FF, E8, CA, 8F, FC, FF, C7, 85, 8C, 00, 00, 00, 01, 00, 00, 00, EB, 17, 90, 90, E8, F7, 91, FC, FF, 85, C0, 0F, 94, C0, 48, 0F, B6, C0, 89, 85, 8C, 00, 00, 00, 90, 8B, 85, 8C, 00, 00, 00, 48...
 
[+]

Entropy:
5.8612

Code size:
249.5 KB (255,488 bytes)

Scan femx64.dll - Powered by Reason Core Security