di8.dll

Scan di8.dll - Powered by Reason Core Security
MD5:
dca3acb6143a4f62dcf4e1aff1bcc26e

SHA-1:
ee7c624ac835f64ac0db0f36d096d8bf5a424db1

SHA-256:
ae3700e4c81e43bdc5c03022ae77d0268f1954ca7cd2d879d3aa93aa6f77626d

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/3/2016 1:37:56 AM UTC  (today)

Scan engine
Detection
Engine version

Prevx
Heuristic: Suspicious Self Modifying File
3.0.6

File size:
48 KB (49,152 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\best buy games\hunting unlimited 8\lib\di8.dll

File PE Metadata
Compilation timestamp:
6/26/2007 2:37:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
384:UQzT4dtISr2FbhNUSBDJACN5Xp5H70aHLbYjLn88HHHoObKwxGNTh43167VFQLtl:U1LI7hzyCfXr4av4n88HHpxyTh431k

Entry address:
0x6BB2

Entry point:
6A, 0C, 68, 58, 8C, 00, 10, E8, 72, 01, 00, 00, 33, C0, 40, 89, 45, E4, 33, FF, 89, 7D, FC, 8B, 75, 0C, 3B, F7, 75, 0C, 39, 3D, 04, 65, 01, 10, 0F, 84, AC, 00, 00, 00, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, 0C, 65, 01, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, E5, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, 2D, E2, FF, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
4.8268

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
24 KB (24,576 bytes)

Scan di8.dll - Powered by Reason Core Security