flyvpnbind-x64.dll

FlyVPN

FlyVPN INC

It is installed as a Winsock Layered Service Provider (LSP) named “FlyVPN Bind UDP Filter” as a layered chain entry. This is installed with FlyVPN.
Publisher:
www.flyvpn.com  (signed by FlyVPN INC)

Product:
FlyVPN

Description:
FlyVPN Windows Socket Provider

Version:
3.0.1.6

MD5:
112a38f39bdd67c7a8c983d8dd13ca46

SHA-1:
992a46b3918fe048bdb403500924accf359df6a2

SHA-256:
f995da641ae75095a2b42867f2c5464c141171eb459792357d7d245711c17b1f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 5:53:36 PM UTC  (today)

File size:
225.1 KB (230,520 bytes)

Product version:
3.0.1.6

Copyright:
Copyright (C) 2009 - 2013 www.flyvpn.com. All rights reserved.

Original file name:
FlyVPNBind.dll

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\Program Files\flyvpn\flyvpnbind-x64.dll

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
2/8/2012 9:16:43 PM

Valid to:
2/8/2015 9:16:43 PM

Subject:
CN=FlyVPN INC, O=FlyVPN INC, L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214C547F499517FD0797F799C5A1C553CB

File PE Metadata
Compilation timestamp:
5/19/2013 12:21:54 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:jdmzO4gzfvpn4/6OnyK6jabk2TZ0tjBUk:jZRn4/hB6+b/Swk

Entry address:
0x16928

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, F7, 81, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, AB, FE, FF, FF, CC, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 6C, 24, 10, 48, 89, 74, 24, 18, 57, 48, 83, EC, 20, 49, 8B, E8, 48, 8B, F2, 48, 8B, D9, 48, 85, C9, 75, 05, E8, 0D, 19, 00, 00, 48, 63, 43, 18, 8B, 7B, 14, 48, 03, 46, 08, 75, 05, E8, FB, 18, 00, 00, 33, C9, 85, FF, 74, 33, 4C...
 
[+]

Entropy:
6.1161

Code size:
161.5 KB (165,376 bytes)

Winsock2 LSP
Name:
FlyVPN Bind UDP Filter

Type:
Layered Chain Entry

Provider ID:
{4DE028BC-6CDD-462E-A8A5-6DDF42D4D404}

Service flags:
0x20609


The file flyvpnbind-x64.dll has been discovered within the following program.

FlyVPN  by FlyVPN Inc.
Publisher's description - “VPN allows you to change your region, unlock online game limitation, Bypass Internet restrictions such as school, company and hotel, reduce lag for online game, unblock websites, anonymous web browsing, Anonymous surfing, hide & change IP.”
www.flyvpn.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan flyvpnbind-x64.dll - Powered by Reason Core Security