libclamav.dll

ClamAV

Fiorentino Media Inc.

The module libclamav.dll, “ClamAV - libclamav” by Fiorentino Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
SourceFire, Inc.  (signed by Fiorentino Media Inc.)

Product:
ClamAV

Description:
ClamAV - libclamav

Version:
devel-clamav-0.97-408-ge11f7cc

MD5:
47d738ac300670f9e3312ec1899f8eee

SHA-1:
4fd18fe518a903e35fa8f46dcfd9f2f573f01564

SHA-256:
58a302ac29ac6309c4746b048986d889eea2c009533e39e1b8469542600abf47

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/27/2024 12:56:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.2.8.10

File size:
567.5 KB (581,096 bytes)

Product version:
ClamAV 0.98 (devel-clamav-0.97-408-ge11f7cc)

Copyright:
(C) 2009 Sourcefire, Inc.

Trademarks:
License: GNU GPL, Version 2

Original file name:
libclamav.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\spyware king\clamunpack\libclamav.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/23/2013 7:00:00 PM

Valid to:
4/24/2014 6:59:59 PM

Subject:
CN=Fiorentino Media Inc., O=Fiorentino Media Inc., STREET="7154 E. Stetson Drive, Suite 420", L=Scottsdale, S=AZ, PostalCode=85251, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
008F51225A01B075D147E99565D34E0155

File PE Metadata
Compilation timestamp:
5/23/2012 7:10:04 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:+YQHZRBwA5b3V1GxfsyZVeIo1zXXXXgXwXXz/STVXXXXXzXYzXzXizX8XzXzXzXF:+v/j7kVM1zXXXXgXwXXz6TVXXXXXzXY7

Entry address:
0x2342B

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 41, 79, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, F0, 7D, 08, 10, 89, 0D, EC, 7D, 08, 10, 89, 15, E8, 7D, 08, 10, 89, 1D, E4, 7D, 08, 10, 89, 35, E0, 7D, 08, 10, 89, 3D, DC, 7D, 08, 10, 66, 8C, 15, 08, 7E, 08, 10, 66, 8C, 0D, FC, 7D, 08, 10, 66, 8C, 1D, D8, 7D, 08, 10, 66, 8C, 05, D4, 7D, 08, 10, 66, 8C, 25, D0, 7D, 08, 10, 66, 8C, 2D, CC, 7D, 08, 10, 9C, 8F, 05, 00, 7E...
 
[+]

Entropy:
5.1065

Code size:
189 KB (193,536 bytes)

Remove libclamav.dll - Powered by Reason Core Security