DASAct.dll

Microsoft Reader Activation Client Components

Test Company

While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The module DASAct.dll, “Microsoft DDN Activation Control” by Test Company has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Microsoft Corporation  (signed by Test Company)

Product:
Microsoft Reader Activation Client Components

Description:
Microsoft DDN Activation Control

Version:
2.0.1.3185

MD5:
10bc6c373011bb7bec33304d4dde7334

SHA-1:
3f8f03a523bdcc562aecf609fc0c7f64b14b68cb

SHA-256:
52abfe7a410247af3785d734bd7d2b25c58d93f02f9c7446d09a0083892cc07a

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 1:30:01 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.TestCompany (M)
16.1.13.21

File size:
147.5 KB (151,048 bytes)

Product version:
Version 2.0.1

Copyright:
Copyright © Microsoft Corporation 2001-2003

Trademarks:
Microsoft® is a registered trademark of Microsoft Corporation in the U.S. and/or other countries.

Original file name:
DASAct.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\windows\dasact.dll

Digital Signature
Signed by:

Authority:
Root Agency

Valid from:
1/30/2007 5:06:14 PM

Valid to:
1/30/2008 5:06:13 PM

Subject:
CN=Test Company, OU=TESTING USE ONLY

Issuer:
CN=Root Agency

Serial number:
E6E008A2CB17B0B34612D59A1111D02D

File PE Metadata
Compilation timestamp:
1/30/2007 4:52:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.1

CTPH (ssdeep):
3072:Rsy7KRB0xCz7XiJn40Q2ZWm1FKsb+RmPVJxK0HisdULvjbCE5S5:DbxcmJnC1m1Y2++WLvRS5

Entry address:
0x104D7

Entry point:
55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 85, F6, 75, 09, 83, 3D, B8, F5, 01, 10, 00, EB, 26, 83, FE, 01, 74, 05, 83, FE, 02, 75, 22, A1, F4, 0C, 02, 10, 85, C0, 74, 09, 57, 56, 53, FF, D0, 85, C0, 74, 0C, 57, 56, 53, E8, E7, FE, FF, FF, 85, C0, 75, 04, 33, C0, EB, 4E, 57, 56, 53, E8, 03, 29, FF, FF, 83, FE, 01, 89, 45, 0C, 75, 0C, 85, C0, 75, 37, 57, 50, 53, E8, C3, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03, 75, 26, 57, 56, 53, E8, B2, FE, FF, FF, 85, C0, 75, 03, 21, 45, 0C, 83, 7D, 0C, 00...
 
[+]

Entropy:
6.2723

Developed / compiled with:
Microsoft Visual C++

Code size:
112 KB (114,688 bytes)

ActiveX Install
Name:
{814EA0DA-E0D9-4AA4-833C-A1A6D38E79E9}


Remove DASAct.dll - Powered by Reason Core Security