tutuStart.dll

Wentutu Start Menu

Admobile Limited

Publisher:
AdMobile  (signed by Admobile Limited)

Product:
Wentutu Start Menu

Version:
1.3.0.0

MD5:
5b7c8365280515403b5afbbbe41dad0a

SHA-1:
b83c8f6eec748755c7da3cba1e1c50363f19e88b

SHA-256:
45a89d347e63435e43ca49290b89c24083dcf49db07422731f1f4e33a39ee429

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:54:47 AM UTC  (today)

File size:
92.6 KB (94,784 bytes)

Product version:
1.3.0.0

Copyright:
Copyright: (C) AdMobile Limited.

Original file name:
tutuStart.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese

Common path:
C:\Program Files\wentutu\startmenu\tutustart.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/24/2012 2:00:00 AM

Valid to:
10/25/2013 1:59:59 AM

Subject:
CN=Admobile Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Admobile Limited, L=Kowloon, S=Hongkong, C=HK

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
30C670F94322B188ECBE7A59C7171B49

File PE Metadata
Compilation timestamp:
11/14/2012 9:50:13 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:x7C155UIBWAIbDrYXEpz9tWqcB3XdMrnvxCA5nybvLZq5kaDBk49UGArR4c5xp5B:x7kUrMXsHW3XdMr/YLs5v9k93rpL4VEx

Entry address:
0x3104

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 18, 28, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 90, EE, 00, 10, 89, 0D, 8C, EE, 00, 10, 89, 15, 88, EE, 00, 10, 89, 1D, 84, EE, 00, 10, 89, 35, 80, EE, 00, 10, 89, 3D, 7C, EE, 00, 10, 66, 8C, 15, A8, EE, 00, 10, 66, 8C, 0D, 9C, EE, 00, 10, 66, 8C, 1D, 78, EE, 00, 10, 66, 8C, 05, 74, EE, 00, 10, 66, 8C, 25, 70, EE, 00, 10, 66, 8C, 2D, 6C, EE, 00, 10, 9C, 8F, 05, A0, EE...
 
[+]

Code size:
33.5 KB (34,304 bytes)

Scan tutuStart.dll - Powered by Reason Core Security