npjoinff.dll

Web Conferencing Plug-In

WiredRed Corporation

Publisher:
Mitel  (signed by WiredRed Corporation)

Product:
Web Conferencing Plug-In

Version:
4.6.0.1465

MD5:
1c981020c378d86b53c7c2666be8405b

SHA-1:
4eabd4dc4fbfdf057ec7e10bbc425f7a70a3dd07

SHA-256:
6771a85f0b715b2282365115c9575f5d8a74d4ab7124cbb8d75b25ddbfede273

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/19/2024 6:15:12 AM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Banload.E.gen
v6.-

File size:
1.4 MB (1,466,800 bytes)

Product version:
1.0.0.0

Copyright:
(c) 2005, 2007 Mitel

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\mitel networks\plugins\firefox\plugins\npjoinff.dll

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
7/18/2007 5:00:00 PM

Valid to:
7/18/2009 4:59:59 PM

Subject:
CN=WiredRed Corporation, OU=Cert1, O=WiredRed Corporation, L=San Diego, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
403336798F0FF4EF800060DC27793BC6

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:36Eb4USOW5AY15qTVFVInIfyFAtP6xEWbm4p0hDyx/HkKWmQ2muGGqA:3GxgVFu7FAd/RKxMv

Entry address:
0x134248

Entry point:
55, 8B, EC, 83, C4, C4, B8, D4, 27, 53, 00, E8, B8, 32, ED, FF, E8, 3F, 0D, ED, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6832

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,258,496 bytes)

Scan npjoinff.dll - Powered by Reason Core Security