pthreadvc2.dll

Wandou Technology Ltd

This is installed with SnapPea.
Publisher:
Open Source Software community project  (signed by Wandou Technology Ltd)

Description:
POSIX Threads for Windows32 Library

Version:
2, 8, 0, 0

MD5:
e9ff873d826b4bb6b9a8a6f4b19d8d11

SHA-1:
2cfe00b9259b1a8ca1eada98a889f96b822c8499

SHA-256:
f3a0bf09e87aa5a56b593708786f5c273cc51ced52aa72331916de63bd2b4286

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:45:07 PM UTC  (today)

File size:
52.9 KB (54,216 bytes)

Product version:
2, 8, 0, 0

Copyright:
Copyright (C) Project contributors 1998-2004

Original file name:
pthreadVCE

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\wandoulabs\pthreadvc2.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/25/2011 5:30:00 AM

Valid to:
4/25/2013 5:29:59 AM

Subject:
CN=Wandou Technology Ltd, OU=Wandou Technology Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wandou Technology Ltd, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
76015B1273AEA325800AA3D536CCB13D

File PE Metadata
Compilation timestamp:
9/9/2009 11:42:55 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
768:YRtVU1nwRYvLfYkCy/VKMPiH3YXeT5IILKQ2b:itan8y93PiH3YOTBmQO

Entry address:
0x6EA3

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, 11, 04, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, CD, FE, FF, FF, 59, C2, 0C, 00, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, A8, C2, 00, 10, 89, 0D, A4, C2, 00, 10, 89, 15, A0, C2, 00, 10, 89, 1D, 9C, C2, 00, 10, 89, 35, 98, C2, 00, 10, 89, 3D, 94, C2, 00, 10, 66, 8C, 15, C0, C2, 00, 10, 66, 8C, 0D, B4, C2, 00, 10, 66, 8C, 1D, 90, C2, 00, 10, 66, 8C, 05, 8C, C2, 00, 10, 66, 8C, 25, 88, C2, 00, 10, 66, 8C, 2D, 84, C2, 00, 10, 9C, 8F, 05, B8, C2, 00, 10, 8B, 45...
 
[+]

Entropy:
5.4233

Code size:
30 KB (30,720 bytes)

The file pthreadvc2.dll has been discovered within the following program.

SnapPea  by Wandou Labs
The software currently distributes the app through the OpenCandy monetization platform which is known to distribute adware.
snappea.com
25% remove it
 
Powered by Should I Remove It?

Scan pthreadvc2.dll - Powered by Reason Core Security