screenhooks.dll

Star SoftComm (China) Ltd

Publisher:
Star SoftComm (China) Ltd  (signed and verified)

MD5:
90d9f0665927ad98df9cd31644c1b938

SHA-1:
0b84a95f830145499e313fd005bf5a419ded71ee

SHA-256:
11be9c415710cd90e7c7c4fc4578e21c21f21e8fa7245132a02c27fd5e4ac54d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 3:27:51 PM UTC  (today)

File size:
82.4 KB (84,352 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\starsoftcomm\coocare4\远程服务\bin\plugin\remotedesk\screenhooks.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/12/2013 8:00:00 AM

Valid to:
2/11/2015 7:59:59 AM

Subject:
CN=Star SoftComm (China) Ltd, OU=CTO Office, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Star SoftComm (China) Ltd, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
28768863CBCA80A1629BE9D150D93D62

File PE Metadata
Compilation timestamp:
11/29/2013 6:53:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
768:JZ7ZvnRsDJ6hX5e4Fzx3fkDc8QUIm88RXNVms0+eU47U45uOOTESQPFZhcBn:lvgo5e4FzxPocCBXNVmsMU4yTErPTo

Entry address:
0x39DE

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, 2C, 2A, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, 6A, 0C, 68, E8, CE, 00, 10, E8, 0D, 28, 00, 00, 83, 65, E4, 00, 8B, 75, 08, 3B, 35, E8, F8, 00, 10, 77, 22, 6A, 04, E8, FF, 2B, 00, 00, 59, 83, 65, FC, 00, 56, E8, 41, 34, 00, 00, 59, 89, 45, E4, C7, 45, FC, FE, FF, FF, FF, E8, 09, 00, 00, 00, 8B, 45, E4, E8, 19, 28, 00, 00, C3, 6A, 04, E8, FC, 2A, 00, 00, 59, C3, 55, 8B, 6C, 24, 08, 83, FD, E0, 0F, 87, 9F, 00, 00, 00, 53, 8B...
 
[+]

Entropy:
5.9023

Code size:
40 KB (40,960 bytes)

Scan screenhooks.dll - Powered by Reason Core Security