itk201_bidi.dll

Practical Automation Rendering Plug-in

Contoso.com(Test)

Publisher:
Microsoft Corp.  (signed by Contoso.com(Test))

Product:
Practical Automation Rendering Plug-in

Description:
OEM Customization Sample

Version:
2, 0, 0, 1

MD5:
ef0126e49efe2810d6b1c9a3a0038cec

SHA-1:
ef7917edd55a6603b86aa8f1f74168f43654b9af

SHA-256:
1f7fb4340167db74323f012cfaa6729decb301aa200dc77c93b267ab086f6337

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/19/2024 8:04:16 AM UTC  (today)

File size:
26.2 KB (26,784 bytes)

Product version:
2.00

Copyright:
Copyright © 1998-2003

Trademarks:
Microsoft® is a registered trademark of Microsoft Corporation. Windows(TM) is a trademark of Microsoft Corporation

Original file name:
OEMUNI.DLL

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\itk38_win7_v2p00_b01\amd64\itk201_bidi.dll

Digital Signature
Authority:
Contoso.com(Test)

Valid from:
3/25/2010 12:47:04 PM

Valid to:
12/31/2039 6:59:59 PM

Subject:
CN=Contoso.com(Test)

Issuer:
CN=Contoso.com(Test)

Serial number:
AA73E97BCBB5278143E3A8C8140F970C

File PE Metadata
Compilation timestamp:
3/17/2010 12:28:17 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
384:P8D7TgD3aFhlWhnrdT4GVx9bXWjL6uFmPmbXAKeTQcbgQbX3HnASWlZH3jeTYJLn:P8PO4GtXW3LxAKPc5r3HnMZ3RLn

Entry address:
0x4310

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 07, 02, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, CF, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, 99, 1D, 00, 00, 75, 12, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 03, C2, 00, 00, 48, C1, C9, 10, E9, 74, 02, 00, 00, CC, CC, CC, CC, CC, CC, FF, 25, 94, CD, FF, FF, CC, CC, CC, CC...
 
[+]

Entropy:
5.9537

Code size:
16.5 KB (16,896 bytes)

Scan itk201_bidi.dll - Powered by Reason Core Security