XDOWN.DLL

XDOWN Module

Softforum Co., Ltd.

Publisher:
SOFTFORUM  (signed by Softforum Co., Ltd.)

Product:
XDOWN Module

Version:
2, 0, 0, 2

MD5:
060554df61f90752f2e830b13092370a

SHA-1:
a03059593e15a87f51d13cbe9a57a6fe0e04f9a6

SHA-256:
c81f97c765f526badd1b4b0d6a3dc0e7d131b0acb797cbe86bf9894218467f85

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 2:17:02 PM UTC  (today)

File size:
97.7 KB (100,064 bytes)

Product version:
2, 0, 0, 2

Copyright:
Copyright 2005

Original file name:
XDOWN.DLL

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\windows\downloaded Program Files\xdown.dll

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/2/2005 6:34:24 PM

Valid to:
5/27/2006 7:12:22 PM

Subject:
CN="Softforum Co., Ltd.", OU=Development, O="Softforum Co., Ltd.", L=Kyunggi, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3F45DF

Registration
CLSID:
{2FCFB63B-BA20-465E-9DD5-F11219121EA6}

ProgID:
XDOWN.XFile.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
2/8/2006 4:02:24 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:1UaCtTYaf+BNJOmBE78+l9yTT8TgdPa4hC2hX7+8tgxurd6SSHnnovJs+Cd:ytTYaEN1E7VS5hL7PtvoSunnF1

Entry address:
0x6ADA

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, 3C, 28, 01, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, 48, 3F, 01, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, E7, FE, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, 48, A5, FF, FF, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, C3, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, B2, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
5.3575

Developed / compiled with:
Microsoft Visual C++

Code size:
48 KB (49,152 bytes)

ActiveX Install
Name:
{2FCFB63B-BA20-465E-9DD5-F11219121EA6}


Scan XDOWN.DLL - Powered by Reason Core Security