libclamav.dll

ClamAV

Fiorentino Media Inc.

The module libclamav.dll, “ClamAV - libclamav” by Fiorentino Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
SourceFire, Inc.  (signed by Fiorentino Media Inc.)

Product:
ClamAV

Description:
ClamAV - libclamav

Version:
devel-clamav-0.97-408-ge11f7cc

MD5:
44beb09566d97946a8ebe26bb43ee819

SHA-1:
c1a300323db00af100bb0cbac78932e2f383c701

SHA-256:
d8ce8834bcda10c8f2905a0c66a173e8cc2c5476f5dee6b7adb70e42ab74d72c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 6:59:23 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.FiorentinoMedia.J
14.2.25.4

File size:
567.1 KB (580,704 bytes)

Product version:
ClamAV 0.98 (devel-clamav-0.97-408-ge11f7cc)

Copyright:
(C) 2009 Sourcefire, Inc.

Trademarks:
License: GNU GPL, Version 2

Original file name:
libclamav.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\activeris antimalware\clamunpack\libclamav.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/25/2012 12:00:00 AM

Valid to:
1/24/2013 11:59:59 PM

Subject:
CN=Fiorentino Media Inc., O=Fiorentino Media Inc., STREET=7904 E. Chaparral Road, STREET=STE A110-430, L=Scottsdale, S=AZ, PostalCode=85250, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
009CB8D8E313806C1914ADA02E4DB86602

File PE Metadata
Compilation timestamp:
5/23/2012 1:10:04 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:4YQHZRBwA5b3V1GxfsyZVeIo1zXXXXgXwXXz/STVXXXXXzXYzXzXizX8XzXzXzXl:4v/j7kVM1zXXXXgXwXXz6TVXXXXXzXYL

Entry address:
0x2342B

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 41, 79, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, F0, 7D, 08, 10, 89, 0D, EC, 7D, 08, 10, 89, 15, E8, 7D, 08, 10, 89, 1D, E4, 7D, 08, 10, 89, 35, E0, 7D, 08, 10, 89, 3D, DC, 7D, 08, 10, 66, 8C, 15, 08, 7E, 08, 10, 66, 8C, 0D, FC, 7D, 08, 10, 66, 8C, 1D, D8, 7D, 08, 10, 66, 8C, 05, D4, 7D, 08, 10, 66, 8C, 25, D0, 7D, 08, 10, 66, 8C, 2D, CC, 7D, 08, 10, 9C, 8F, 05, 00, 7E...
 
[+]

Code size:
189 KB (193,536 bytes)

Remove libclamav.dll - Powered by Reason Core Security