Information about VoipEngine.dll.quarantined
- File Details
- Overview
- Analysis
VoipEngine.dll.quarantined
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5fa36fea00ebe1b6e49974b38f11c5d3 |
Size: |
2 MB |
First Published: |
2017-05-25 17:03:04 (7 years ago) |
Latest Published: |
2019-07-28 04:58:36 (5 years ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2019-07-28 04:58:36 (5 years ago) |
Overview
%programfiles%\tencent\wechat |
%profile%\downloads\wechatportable\app\wechat |
%temp%\wechatuninst |
%profile%\wechat |
%sysdrive%\adwcleaner\quarantine\files\ecvoxejmtpvnscinikuvghgcxvksmpni\wechat |
%sysdrive%\windows.old\users\admin\appdata\local\temp |
%programfiles%\tencent |
%temp% |
%programfiles%\tencent |
%programfiles%\tencent |
VoipEngine.dll |
VoipEngine.dll.quarantined |
VoipEngine.dll.tmp1 |
VoipEngine.dll_1495771524087 |
|
37.5% |
|
|
15.8% |
|
|
12.4% |
|
|
6.6% |
|
|
4.2% |
|
|
3.9% |
|
|
3.9% |
|
|
2.7% |
|
|
1.5% |
|
|
1.5% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
0.8% |
|
|
0.8% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
Windows 10 |
58.5% |
|
Windows 7 |
31.5% |
|
Windows 8.1 |
8.1% |
|
Windows XP |
1.5% |
|
Windows 8 |
0.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x0008593a |
Name |
Size of data |
MD5 |
.text |
1758208 |
b918b7b7431925649fa3e8aab21de3e8 |
.rdata |
395264 |
0675fca1a4e411d3649c491d651965fd |
.data |
50688 |
9d7360075be10e556d98d08da6a880b5 |
.gfids |
512 |
d298615cfa1f09ca98fd0e52645d5e51 |
.rodata |
2560 |
aeeff2fa4d8331c6bc909e74ee8a4f57 |
.tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
_RDATA |
2560 |
da55554d0f358304af75f0cd4b819799 |
.rsrc |
1536 |
b79f9a0bc378d5def8180006242ba379 |
.reloc |
49664 |
112d9be5326372a67b631778274a55c7 |