KmUdx.dll

Zhejiang HaoYing Network Co. , Ltd

Publisher:
PIPI  (signed by Zhejiang HaoYing Network Co. , Ltd)

Product:
PIPI

Description:
KmUdx

Version:
1, 2, 1, 0

MD5:
7cae4fb34f77014e577d1a86512f7ba4

SHA-1:
90ea2c2e8ea69325ba3f19e03f75b0b5ccfa7a50

SHA-256:
747aeccda743599ec3f3fe84055f17bf63decedb5facf140079035050a74866b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 1:50:12 PM UTC  (today)

File size:
114.8 KB (117,600 bytes)

Product version:
1, 2, 1, 0

Copyright:
版权所有 (C) 2010

Trademarks:
PIPI

Original file name:
KmUdx.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\roaming\pipi\plugins\kmudx.dll

Digital Signature
Authority:
WoSign eCommerce Services Limited

Valid from:
6/5/2012 5:50:51 PM

Valid to:
6/8/2015 10:51:17 PM

Subject:
E=ycz@pipi.cn, CN="Zhejiang HaoYing Network Co. , Ltd", O="Zhejiang HaoYing Network Co. , Ltd", L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign eCommerce Services Limited, C=CN

Serial number:
01966376F522EE

File PE Metadata
Compilation timestamp:
10/11/2014 2:50:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:wcwlSY5TggBPAFp/ywapKJdaTWqahAEvCOfSrS3XEeH2l+j42WV84ooh6qB:aTggiFp/yXKWqqeqS3XTH2lsZW+4ooj

Entry address:
0x12B5C

Entry point:
6A, 0C, 68, 18, 4D, 81, 63, E8, 00, 03, 00, 00, 33, C0, 40, 89, 45, E4, 33, FF, 89, 7D, FC, 8B, 75, 0C, 3B, F7, 75, 0C, 39, 3D, E8, 70, 81, 63, 0F, 84, AC, 00, 00, 00, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, F8, 70, 81, 63, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, E5, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, 63, 38, FF, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
6.0268

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
76 KB (77,824 bytes)

Scan KmUdx.dll - Powered by Reason Core Security