FlyVPNBind.dll

FlyVPN

FlyVPN INC

It is installed as a Winsock Layered Service Provider (LSP) named “FlyVPN Bind UDP Filter” as a layered chain entry. This is installed with FlyVPN.
Publisher:
www.flyvpn.com  (signed by FlyVPN INC)

Product:
FlyVPN

Description:
FlyVPN Windows Socket Provider

Version:
2.2.3.6

MD5:
2697e44b1cd0e59df0bec8d45e382468

SHA-1:
81b1bfc5d0412d45eba42cd8dc0094e7539905c6

SHA-256:
44228460f9f148f3f2c071532cefd9a823a8a65ff2fb48ecaa2e5e30783e0efd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:38:16 PM UTC  (today)

File size:
167.1 KB (171,128 bytes)

Product version:
2.2.3.6

Copyright:
Copyright (C) 2009 - 2012 www.flyvpn.com. All rights reserved.

Original file name:
FlyVPNBind.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\flyvpn\flyvpnbind.dll

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
2/8/2012 8:16:43 PM

Valid to:
2/8/2015 8:16:43 PM

Subject:
CN=FlyVPN INC, O=FlyVPN INC, L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214C547F499517FD0797F799C5A1C553CB

File PE Metadata
Compilation timestamp:
4/14/2012 11:54:43 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:19nophFO0HBFD5Qhz2g0YgnVkn0gtlAtN5EkPLBsh:1FophFfHjehzblsUtyE5h

Entry address:
0x12074

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 7E, 89, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, 68, 00, 21, 01, 10, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 5C, 61, 02, 10, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, CC, CC, CC...
 
[+]

Entropy:
6.4133

Code size:
124 KB (126,976 bytes)

Winsock2 LSP
Name:
FlyVPN Bind UDP Filter

Type:
Layered Chain Entry

Provider ID:
{4DE028BC-6CDD-462E-A8A5-6DDF42D4D404}

Service flags:
0x20609


The file FlyVPNBind.dll has been discovered within the following program.

FlyVPN  by FlyVPN Inc.
Publisher's description - “VPN allows you to change your region, unlock online game limitation, Bypass Internet restrictions such as school, company and hotel, reduce lag for online game, unblock websites, anonymous web browsing, Anonymous surfing, hide & change IP.”
www.flyvpn.com
About 1% of users remove it
 
Powered by Should I Remove It?

Scan FlyVPNBind.dll - Powered by Reason Core Security