Updater.dll

网易POPO

Netease(Hangzhou) Network Co.Ltd.

Publisher:
网易公司  (signed by Netease(Hangzhou) Network Co.Ltd.)

Product:
网易POPO

Description:
网易POPO动态链接库

Version:
1.0.0.1

MD5:
bee1bc564489bf8ea6e4970f2310f913

SHA-1:
0606c929ece299f150feaad841d0a05ac4e75545

SHA-256:
107a0bd25cda72146625acad1ba7619106452712959ed0c456b577bc6b4e76d2

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 4:46:17 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Sality.AT
7.11.30.172

File size:
1.2 MB (1,235,688 bytes)

Product version:
1.0.0.1

Copyright:
网易公司版权所有 (C) 1997-2012

Original file name:
Updater.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese (Simplified, China)

Common path:
C:\Program Files\netease\popo\updater.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/25/2010 5:30:00 AM

Valid to:
6/25/2013 5:29:59 AM

Subject:
CN=Netease(Hangzhou) Network Co.Ltd., OU=Netease(Hangzhou), OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Netease(Hangzhou) Network Co.Ltd., L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3D8510B4C5BC9C4989238C1C0559F1D9

File PE Metadata
Compilation timestamp:
11/20/2012 12:41:46 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:F44fMNCg4W44COpPZ3nZKMHgicYm54+6nZQr1rUwAG5LieCNuEyB:m4f4CD4HZ3ZKAg9Ym54VQr1hfCNVyB

Entry address:
0x6A0A4

Entry point:
E9, 48, 2A, 0C, 00, E9, 88, 25, 0C, 00, E9, 47, 3E, 0C, 00, E9, 5A, 31, 0C, 00, E9, B3, 02, 07, 00, E9, 2E, 0D, 0C, 00, E9, 89, 32, 07, 00, E9, 58, 0C, 0C, 00, E9, 1F, 99, 06, 00, E9, 42, 12, 0C, 00, E9, 45, 18, 07, 00, E9, F0, 6E, 09, 00, E9, 61, 0B, 0C, 00, E9, A6, 81, 03, 00, E9, 91, 5C, 03, 00, E9, 3C, 98, 07, 00, E9, 17, 6C, 01, 00, E9, 52, DC, 00, 00, E9, 7F, 3D, 0C, 00, E9, F8, 2C, 03, 00, E9, 83, 81, 03, 00, E9, CE, 20, 02, 00, E9, 39, EB, 04, 00, E9, 2A, 0E, 0C, 00, E9, E1, 0C, 0C, 00, E9, EA, CB...
 
[+]

Entropy:
5.7658

Developed / compiled with:
Microsoft Visual C++ 8.0 (Debug)

Code size:
872.5 KB (893,440 bytes)

Scan Updater.dll - Powered by Reason Core Security