XFramePlugin.dll

TODO: <产品名>

TODO: <公司名>

Scan XFramePlugin.dll - Powered by Reason Core Security
Publisher:
TODO: <公司名>

Product:
TODO: <产品名>

Description:
TODO: <文件说明>

Version:
1.0.0.1

MD5:
8e8d6c2ecdf4453072468684f5fad88f

SHA-1:
98c90d5022503e5789aacbd7799a755e75c59022

SHA-256:
62658c262c8172f2ce061856e89efc7c09c9f937cab7c99ebf9b14da6de0e71b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/4/2016 7:19:52 AM UTC  (today)

File size:
396 KB (405,504 bytes)

Product version:
1.0.0.1

Copyright:
TODO: (C) <公司名>。保留所有权利。

Original file name:
XFramePlugin.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\maxis_c99\xframeplugin.dll

File PE Metadata
Compilation timestamp:
8/21/2011 9:28:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
12288:1RJmsoXGYZFbTA9R0Nl1t01l/ivxIGWiCoNC:1RJjoXGYZFbFL1t01l/ivxIGW3o8

Entry address:
0x3E758

Entry point:
6A, 0C, 68, B0, A9, 04, 10, E8, E0, 00, 00, 00, 33, C0, 40, 89, 45, E4, 33, FF, 89, 7D, FC, 8B, 75, 0C, 3B, F7, 75, 0C, 39, 3D, 8C, 93, 05, 10, 0F, 84, AC, 00, 00, 00, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, D0, 93, 05, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, E5, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, 37, F1, FF, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
6.1715

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
268 KB (274,432 bytes)

Scan XFramePlugin.dll - Powered by Reason Core Security