Microsoft.DirectX.AudioVideoPlayback.dll

Microsoft DirectX for Windows

Iminent

This is the SIEN AppScion Installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The module Microsoft.DirectX.AudioVideoPlayback.dll, “Microsoft Managed AudioVideoPlayback” by Iminent has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the SIEN SuperInstall installer.
Publisher:
Microsoft Corporation  (signed by Iminent)

Product:
Microsoft® DirectX for Windows®

Description:
Microsoft Managed AudioVideoPlayback

Version:
5.04.00.2904

MD5:
bcd6f48929c5749f3c573941b2d6ac68

SHA-1:
a4c4306aa79076de567a958a34ef44afb3b883f1

SHA-256:
a68d329ea6a40bf0a5c3fba74848ffdb0cbdae19e3f292b75d7c0f1808ba3ddb

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/25/2024 4:55:41 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Sien.Iminent.Bundler (M)
16.2.15.9

File size:
58 KB (59,384 bytes)

Product version:
5.04.00.2904

Copyright:
Copyright © Microsoft Corporation. All rights reserved.

Original file name:
Microsoft.DirectX.AudioVideoPlayback.dll

File type:
Dynamic link library (Win32 DLL)

Bundler/Installer:
SIEN SuperInstall

Language:
English (United States)

Common path:
C:\Program Files\iminent\microsoft.directx.audiovideoplayback.dll

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
1/26/2010 1:31:06 PM

Valid to:
1/27/2012 1:31:03 PM

Subject:
CN=Iminent, O=Iminent, L=Paris, S=France, C=FR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001266AC7D81A

File PE Metadata
Compilation timestamp:
7/9/2004 5:06:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:coBJPuUm+QFYqG9se2k5R7vtv8+80t2TxJNdfr83A/E9t3DAsmaGLYnq:Lu8qYqK6k5R7O+80tKxJN983aErmaGEq

Entry address:
0xCC0C

Entry point:
FF, 25, 48, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 20, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 1C, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 18, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 24, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 58, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 54, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 50, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 30, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 34, 10, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 38, 10, 40, 00, CC, CC...
 
[+]

Code size:
48.5 KB (49,664 bytes)

Remove Microsoft.DirectX.AudioVideoPlayback.dll - Powered by Reason Core Security