dmbackup.dll

DMAILER

Publisher:
DMAILER  (signed and verified)

MD5:
cac54e9b245efc033cf46f8a910e3aec

SHA-1:
d39ab74597c8d4777a144c8d5c6d33324fbb929a

SHA-256:
cd0094557a55c2546ad255fa5009c00512b5ce79c2ba299e9c218e756e9ad660

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/16/2024 5:00:02 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Stranact
1.3.0.4246

File size:
12.1 MB (12,690,568 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\roaming\sandisk\my vaults\dmbackup.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
9/2/2010 3:00:00 AM

Valid to:
10/3/2011 2:59:59 AM

Subject:
CN=DMAILER, OU=Secure Application Development, O=DMAILER, L=MARSEILLE, S=Bouches-Du-Rhone, C=FR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
52D87598D4DD5248B081864A03F2F42F

File PE Metadata
Compilation timestamp:
11/10/2010 7:01:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:RcPgO8IU3IxE/6qIUErtgORg0BPECaYNBtpWsi1mfF0fVWFFvQetuv3g4CvI:dOpU3IxE/KUEhgL0BPATvqvI

Entry address:
0x53FB40

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, DF, 04, 01, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 83, EC, 14, 53, 33, DB, 56, 8B, 75, 08, 89, 5D, F8, 89, 5D, F4, 89, 5D, FC, 3B, F3, 75, 1E, E8, 9A, 45, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, 32, CE, FF, FF, 83, C4, 14, 8B, C6, E9, 3B, 02, 00, 00, 57, 6A, 24, 68, FF, 00, 00, 00, 56, E8, 55, CE, FF, FF, 8B, 7D, 0C, 83, C4, 0C, 3B, FB, 75, 19, E8, 64, 45, 00, 00, 6A, 16, 5E, 53, 53, 53...
 
[+]

Entropy:
6.0598

Code size:
6.2 MB (6,533,632 bytes)

Scan dmbackup.dll - Powered by Reason Core Security