npsf_bes_64.dll

Módulo de Proteção - Banese (Banco do Estado de Sergipe)

BANCO DO ESTADO DE SERGIPE SA

Publisher:
GAS Tecnologia  (signed by BANCO DO ESTADO DE SERGIPE SA)

Product:
Módulo de Proteção - Banese (Banco do Estado de Sergipe)

Description:
Internet Banking Helper

Version:
3.7.1.1

MD5:
f898191f98aaf0382e6009c896122d5a

SHA-1:
ca38df13062f7e6401f23d0b9d8072043970274d

SHA-256:
1237cfb51ed662f9ed9908042c00745dfffde18b2cf79823549cf7645122a018

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 6:06:21 PM UTC  (today)

File size:
4 MB (4,242,720 bytes)

Product version:
3.7.1.1

Copyright:
Copyright 2013 GAS Tecnologia

Original file name:
npsf_bes_64.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\gas tecnologia\gbbd\npsf_bes_64.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/14/2013 3:23:56 PM

Valid to:
6/15/2014 3:23:56 PM

Subject:
CN=BANCO DO ESTADO DE SERGIPE SA, O=BANCO DO ESTADO DE SERGIPE SA, L=ARACAJU, S=SERGIPE, C=BR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11216F0E7F2E4F8D8CA97F47D454F1C17CBC

Registration
CLSIDs:
{0783EB25-59F8-4F02-B6B0-F1D4349F0018}, {0783EB25-59F8-4F02-B6B1-F1D4349F0018}

ProgIDs:
gas.ibh.bes.1, gas.events.bes.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
12/11/2013 9:16:05 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
11.0

CTPH (ssdeep):
49152:tNErHmha99bl4Q3hc4pq+AbOmzuh/u6oQLDbSdwTTA4D7mO104whmfJChG7v6pa:dCq+5H7mDSMh+6pa

Entry address:
0x3DEB88

Entry point:
E9, 3D, 14, 00, 00, E9, 75, D5, FF, FF, 00, 00, 49, 6E, 74, 65, 72, 6E, 65, 74, 43, 72, 61, 63, 6B, 55, 72, 6C, 41, 00, 00, 00, 43, 72, 65, 61, 74, 65, 57, 69, 6E, 64, 6F, 77, 45, 78, 57, 00, 00, 00, 43, 72, 65, 61, 74, 65, 46, 69, 6C, 65, 4D, 61, 70, 70, 69, 6E, 67, 57, 00, 0F, 84, 91, 23, 00, 00, 66, FF, C1, 66, 0F, B3, F9, 66, 0F, A5, D9, 48, 01, C2, 66, 0F, BC, C8, F9, 48, 8D, 8E, 6B, 69, 9A, 63, 8B, 8E, 8C, 00, 00, 00, 66, 0F, A3, F4, 48, 01, D1, 66, 0F, A3, D0, 48, 89, 4D, F0, D2, F1, 48, C1, C9, 1E...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
2.4 MB (2,548,736 bytes)

Scan npsf_bes_64.dll - Powered by Reason Core Security