echo.DLL

echo Dynamic Link Library

杭州雷龙网络技术有限公司

Publisher:
杭州雷龙网络技术有限公司  (signed and verified)

Product:
echo Dynamic Link Library

Description:
echo DLL

Version:
1, 0, 1, 4

MD5:
09214110c884786a5ba41d9a5cba866d

SHA-1:
054176a3321972201855090bc3ef9d9d1e05ce2f

SHA-256:
d33fc274a6c4b10d543ec9b9c2c9e85c8e5070ce37dd419d073a9d40ae77611b

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
1/2/2026 10:15:19 AM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/QHost.C.gen
4.6.5.141

File size:
202.3 KB (207,152 bytes)

Product version:
1, 1, 16, 16

Copyright:
版权所有 (C) 2014

Original file name:
echo.DLL

File type:
Dynamic link library (Win32 DLL)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/9/2015 8:00:00 AM

Valid to:
5/8/2016 7:59:59 AM

Subject:
CN=杭州雷龙网络技术有限公司, OU=技术部, O=杭州雷龙网络技术有限公司, L=杭州, S=浙江, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1EDCDCEC66FFDF521191D6395C95FA7A

File PE Metadata
Compilation timestamp:
1/19/2016 3:58:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:hkLaNMpfSYRA9QPxgEVfg67xzoBnWFeozQmYdVDU5p2+:iLaySYtPxgEy69zgCrzQmYdVDU58+

Entry address:
0x20709

Entry point:
E8, D8, 4D, 00, 00, 9C, 60, 89, 5C, 24, 2C, E8, DC, DC, 01, 00, 68, 1D, B2, 03, E6, F9, E9, A2, 7D, 00, 00, 0C, C9, 66, 0F, A4, F0, 01, D4, 73, 55, 0F, BD, EE, 89, E5, 80, E4, A9, F6, D0, 66, C1, C0, 04, 37, 83, EC, 18, 66, 0F, BD, C0, 66, 0D, 7F, 2F, F9, FE, C8, 56, D5, 01, 66, D3, E0, 25, 5F, 6B, 26, 6C, D5, A0, 57, 66, 0F, BE, C3, 50, 89, 1C, 24, 0F, 9A, C0, 66, C1, E0, 0C, C6, C4, D3, 81, FA, FC, B3, 9F, 88, 52, 66, 0F, C8, FE, C4, 85, C2, 8B, 45, 08, F8, 84, E5, 50, FF, 34, 24, 85, C0, E9, 3E, 7E, 00...
 
[+]

Entropy:
7.5464

Code size:
28 KB (28,672 bytes)

Scan echo.DLL - Powered by Reason Core Security