SaveKoRes.dll

Heidelberger Druckmaschinen AG

Publisher:
Heidelberger Druckmaschinen AG  (signed and verified)

Description:
Save Wizard

Version:
1.00.004

MD5:
403f19a2183f5d7dfe7940f15262884e

SHA-1:
5508fa0b81fdc7b24379eb6601a918abf22ded0b

SHA-256:
7bb51715ac0850b040640e097449086ab2ff5f8bb2c0cd228495ca0f8307605f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 3:23:11 AM UTC  (today)

File size:
151.1 KB (154,728 bytes)

Original file name:
SaveKoRes.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\savekores.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/30/2007 12:00:00 AM

Valid to:
1/29/2010 11:59:59 PM

Subject:
CN=Heidelberger Druckmaschinen AG, OU=IT-IN, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Heidelberger Druckmaschinen AG, L=Wiesloch, S=Baden-Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6D0A6E2F4D667270CF457B82B8871B1A

File PE Metadata
Compilation timestamp:
4/11/2007 11:32:29 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

Entry address:
0x10CA

Entry point:
6A, 0C, 68, 28, 20, 00, 10, E8, A6, 01, 00, 00, 33, C0, 40, 89, 45, E4, 33, FF, 89, 7D, FC, 8B, 75, 0C, 3B, F7, 75, 0C, 39, 3D, 14, 30, 00, 10, 0F, 84, AC, 00, 00, 00, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, 24, 30, 00, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, E5, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, C5, FE, FF, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
5.2989

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
4 KB (4,096 bytes)

Scan SaveKoRes.dll - Powered by Reason Core Security