foo_input_gsf.dll

Christopher Snowhill

Publisher:
Christopher Snowhill  (signed and verified)

MD5:
50148b347871bd77f2d88f12adc1da88

SHA-1:
cdf570b3efc3045273adc60f260cdb1819750738

SHA-256:
adfc9e567e82e4ff365c8ce68b44e191eaa44ecbdeaa5f4013fb0044de05ccae

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 9:13:04 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Adware-BTB [PUP]
2014.9-141230

File size:
562.6 KB (576,056 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\roaming\foobar2000\user-components\foo_input_gsf\foo_input_gsf.dll

Digital Signature
Authority:
StartCom Ltd.

Valid from:
10/22/2013 12:32:55 AM

Valid to:
10/23/2015 6:11:55 AM

Subject:
E=chris@kode54.net, CN=Christopher Snowhill, L=Riverside, S=California, C=US, Description=nEBSd4eXcz04ekvo

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0B67

File PE Metadata
Compilation timestamp:
11/26/2014 1:14:23 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
6144:azfgpM0mhCNh12JMiV78hfOLLNpOeeiblUq5ANsEMF+4+JPc+D/yA70Xn/pPM5Aa:M0qLNpOeeiblN5AN08PyM5tPaK6O

Entry address:
0x193C7

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 5B, 6F, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, 28, ED, 07, 10, E8, DA, 46, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 38, 44, 08, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 98, 88, 06, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Entropy:
6.6976

Developed / compiled with:
Microsoft Visual C++

Code size:
407.5 KB (417,280 bytes)

Scan foo_input_gsf.dll - Powered by Reason Core Security