YlwCommonRs.dll

YlwCommonRs

YOUNGLIMWON SOFT LAB Co., Ltd.

Publisher:
영림원  (signed by YOUNGLIMWON SOFT LAB Co., Ltd.)

Product:
YlwCommonRs

Version:
1.00

MD5:
700921e904e8f72adb2527b8b94c1766

SHA-1:
8752aeab8bc975e65c807eeab042f082ccab3cdb

SHA-256:
a266a95cd56973d889da29121cc71db75a008c2e9fce32a208c780842c3da02a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/28/2024 8:44:28 PM UTC  (today)

File size:
49.3 KB (50,512 bytes)

Product version:
1.00

Original file name:
YlwCommonRs.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Korean (Korea)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/23/2007 7:00:00 AM

Valid to:
11/23/2008 6:59:59 AM

Subject:
CN="YOUNGLIMWON SOFT LAB Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="YOUNGLIMWON SOFT LAB Co., Ltd.", L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
29FDB3021982326963AF3FCF23553E24

Registration
CLSID:
{BB64B0BC-7BE9-45C4-83B0-F552D877B420}

ProgID:
YlwCommonRs.ClsRs

COM registered:
Yes

File PE Metadata
Compilation timestamp:
2/15/2008 4:20:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:2rNkdJ8sWN1JIGFocqy4SgMFI/YeYNhjmL2jrbgH8i:3w1Jfqy4Wa/qXqSjHpi

Entry address:
0x15BC

Entry point:
5A, 68, 24, 74, 00, 11, 68, 28, 74, 00, 11, 52, E9, E7, FF, FF, FF, 00, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 91, 51, 66, BA, F2, 15, 6F, 43, 8E, 6B, E3, C9, 02, B6, 34, C3, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 6D, 20, 41, 73, 20, 53, 59, 6C, 77, 43, 6F, 6D, 6D, 6F, 6E, 52, 73, 00, 6D, 73, 74, 72, 00, 51, 4C, 50, 61, 72, 61, 6D, 00, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 00, 00, 00, 00, BC, B0, 64, BB, E9, 7B, C4, 45, 83, B0, F5, 52, D8, 77, B4, 20...
 
[+]

Entropy:
4.9248

Developed / compiled with:
Microsoft Visual Basic v6.0

Code size:
24 KB (24,576 bytes)

Automation Object
CLSID:
{BB64B0BC-7BE9-45C4-83B0-F552D877B420}

CLSID name:
YlwCommonRs.ClsRs


The file YlwCommonRs.dll has been seen being distributed by the following 5 URLs.

http://113.160.132.1:8080/Common/FileDownload/.../YlwCommonRs.dll

http://192.168.50.9:8080/Common/FileDownload/.../YlwCommonRs.dll

http://10.100.0.202:8080/Common/FileDownload/.../YlwCommonRs.dll

http://192.168.101.3:8080/Common/FileDownload/.../YlwCommonRs.dll

http://192.168.0.20:8080/Common/FileDownload/.../YlwCommonRs.dll

Scan YlwCommonRs.dll - Powered by Reason Core Security