ResourcesLOC.dll

jZip

Discordia Limited

The module ResourcesLOC.dll by Discordia Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program jZip by Discordia Limited which is a potentially unwanted software program.
Publisher:
Discordia Limited  (signed and verified)

Product:
jZip

Description:
recursos de jZip

Version:
1.3

MD5:
323ea5d25a5041836c962c0a62725fcf

SHA-1:
c4b9d520db963f88279ea31c03af36d80b675ff2

SHA-256:
ef4f2f8581cbbdf9536859ac93d56f55046a4cdf3f888de5a413d5d3e4951255

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/24/2024 8:00:25 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Discordia (M)
16.2.15.6

File size:
679.4 KB (695,744 bytes)

Product version:
1.3.0.104151

Copyright:
Copyright (C) 2011 by Discordia Limited

Original file name:
ResourcesLOC.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\jzip\resourcesloc.dll

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
6/22/2010 7:00:00 PM

Valid to:
7/14/2012 6:59:59 PM

Subject:
CN=Discordia Limited, OU=SECURE APPLICATION DEVELOPMENT, O=Discordia Limited, L=Limassol, S=Limassol, C=CY

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
365134344F55842D5CCE133A8C629064

File PE Metadata
Compilation timestamp:
4/6/2011 8:31:14 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:dA7GV1qE1cAGpSIDgwJ/9cBzqVCvyyReKxfdC1:dAiVcAGpSIDgwJ/9cBzqM6yVfdM

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, B0, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.8196

The file ResourcesLOC.dll has been discovered within the following program.

jZip  by Discordia Limited
Publisher's description - “jZip lets you open files in many archive formats, including the popular RAR format. RAR files are compressed archives, which are files that are designed to store both single and groups of related files while minimizing their memory size to save on storage space.”
www.jzip.com
71% remove it
 
Powered by Should I Remove It?

Remove ResourcesLOC.dll - Powered by Reason Core Security