Kos_SL.dll

HOW SOFT

The module Kos_SL.dll by HOW SOFT has been detected as a potentially unwanted program by 7 anti-malware scanners.
Publisher:
HowSoft  (signed by HOW SOFT)

Description:
Kos_SL

Version:
2013.7.16.3

MD5:
1b642eb868c2292f4e57698e90a82166

SHA-1:
9d1e8696f7df3fed73553e2f096bf26fba25fe35

SHA-256:
542a9234e6ee7bd6ef6bdb7cb926b617986945104d331bff0b719fc4e0c7ff7d

Scanner detections:
7 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 1:46:35 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:HowSoft-A [PUP]
2014.9-141102

AVG
HowSoft
2015.0.3302

Bkav FE
W32.Clodd87.Trojan
1.3.0.6185

Dr.Web
BackDoor.Infector.133
9.0.1.0306

NANO AntiVirus
Trojan.Win32.Generic.dbxlaq
0.28.2.62841

Reason Heuristics
PUP.HOWSOFT.G
14.11.2.23

VIPRE Antivirus
Trojan.Win32.Generic
34266

File size:
689.5 KB (706,080 bytes)

Product version:
2013.7.16.3

Copyright:
Copyright HowSoft. All rights reserved

Original file name:
Kos_SL.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Korean

Common path:
C:\users\{user}\appdata\roaming\kth_opensearch\kos_sl.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
1/30/2013 7:00:00 PM

Valid to:
3/2/2015 6:59:59 PM

Subject:
CN=HOW SOFT, OU=IT Team, O=HOW SOFT, L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7BA3F775C5D05768F56F97039538592C

File PE Metadata
Compilation timestamp:
7/16/2013 5:22:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:G4uF0TjlNbhEZbAISTwTSM024pJRSln6E54Azm1F:7R5bEZbAISsOM024pu1L54AC

Entry address:
0x93AB0

Entry point:
55, 8B, EC, 83, C4, C4, B8, 60, 22, 49, 00, E8, 9C, 34, F7, FF, E8, 57, 10, F7, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
585 KB (599,040 bytes)

Remove Kos_SL.dll - Powered by Reason Core Security