snsi.dll

Shenzhen Xinxiwang Invest and Develop Co., Ltd.

Publisher:

Version:
2.0.0.8

MD5:
5f08950c082878acdb5ef82dd7713bc6

SHA-1:
604ce644399f6b922faca3c40c5250921e101c26

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/16/2024 9:44:11 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.RosheTariMV.Adware
1.3.0.4959

File size:
700.9 KB (717,744 bytes)

Product version:
2.0.0.8

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Documents and Settings\{user}\Application data\snsi\snsi.dll

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
2/13/2014 3:06:47 PM

Valid to:
2/13/2015 3:06:47 PM

Subject:
E=lixiawu2010@163.com, CN="Open Source Developer, lixia WU", OU=IT, O="Shenzhen Xinxiwang Invest and Develop Co., Ltd.", C=CN

Issuer:
CN=Certum Level III CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
766B3F14C31B040177B3799AB664C091

Registration
CLSIDs:
{274CF075-0DE9-47EE-8825-67CC6BF8AACE}, {BA9C3A60-8AFD-4B32-88AC-E04EF66B97F5}

ProgID:
wlsdll.WlsDllCtrl.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
1/9/2014 5:05:10 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:hT3lakrh10QzECJsSv0nj9091OZegBRhy1SvDgsaEYCxWST0kCeL9Lqrf1ak4Omo:NdEMMJNRhyo7gs3uSTerf1pd

Entry address:
0x6914A

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 26, DE, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 50, 2B, 0A, 10, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 50, 2B, 0A, 10, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF...
 
[+]

Entropy:
6.2749

Code size:
524.5 KB (537,088 bytes)

Scan snsi.dll - Powered by Reason Core Security