audition2.dll

Cong ty dau tu va phat trien cong nghe thong tin

Publisher:

MD5:
335881f49e7decb7e4a11877f2f4d64f

SHA-1:
44e5a00a84cd152241e054700ba904ef1ab5cddb

SHA-256:
59d70fb3411854ce66dcfef901ec7fa7174c54e0a6ba8308c0adf944a004dcb2

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 2:43:24 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

Bkav FE
HW32.CDB
1.3.0.4959

File size:
55.8 KB (57,160 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\vtcgame\dot kich\gpgame\audition2.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/30/2013 7:00:00 AM

Valid to:
8/26/2015 6:59:59 AM

Subject:
CN=Cong ty dau tu va phat trien cong nghe thong tin, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Cong ty dau tu va phat trien cong nghe thong tin, L=Hanoi, S=Hanoi, C=VN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2F318FA88A92CCE830CC187023EC0B36

File PE Metadata
Compilation timestamp:
6/12/2014 5:32:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
768:Zolqe6f4jzsAK1FvCWl1r8eitwgjp4sDcSqsyA27RuBeyKFN3hp2EgDB0bTGn3Os:ZonjzW1daKop3RDKwIdFNysK3O/0

Entry address:
0x5819

Entry point:
B8, 94, FF, 01, 10, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 00, 4C, 69, 83, F5, C8, 66, 30, E0, 16, 7D, 68, C3, 4F, 75, DA, 27, 15, D7, FF, 57, 2B, 7E, 57, 70, 9F, 95, B4, 52, E2, A3, A4, 40, 04, 96, 9E, 56, 04, A4, 23, A3, 1A, 9C, A5, D8, 96, DB, 85, 68, 30, 5A, 18, CA, 8E, B2, EB, 58, 5A, 60, CC, 5A, 2C, E8, EC, E2, BE, 6A, 71, C6, 60, C2, 4C, 66, 08, FE, D3, 1C, 3C, DC, AB, 7B, F7, 33, 12, 84, EE, F9, 31, 26, 8A, 2B, EF, 34...
 
[+]

Packer / compiler:
PECompact v2

Code size:
72 KB (73,728 bytes)

Scan audition2.dll - Powered by Reason Core Security