SQLite.Interop.dll

System.Data.SQLite

SqueakyChocolate

SQLite.Interop.dll is the Interop assembly for SQLite used with the .Net framwork to work with SQLite databases and is recompiled by SqueakyChocolate. The module SQLite.Interop.dll, “System.Data.SQLite Interop Assembly” by SqueakyChocolate has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself. It is also typically executed from the user's temporary directory.
Publisher:
Robert Simpson, et al.  (signed by SqueakyChocolate)

Product:
System.Data.SQLite

Description:
System.Data.SQLite Interop Assembly

Version:
1.0.84.0

MD5:
8964470da38dad2843ba8ecdf98044af

SHA-1:
a3959b78d8d533414259285caeebb3d75a800d68

SHA-256:
dea606fabad96d375579c874223624d844bc7b2b5d16ac16cd43f5066cc10662

Scanner detections:
1 / 68

Status:
Adware

Explanation:
While the .Net Interopt file itself is not dangerous, it is part of a program that has been detected as potentially unwanted or malicious.

Analysis date:
5/7/2024 10:24:39 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.installCore (M)
16.10.16.14

File size:
767.4 KB (785,800 bytes)

Product version:
1.0.84.0

Copyright:
Public Domain

Original file name:
SQLite.Interop.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\x86\sqlite.interop.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
2/19/2012 9:00:00 PM

Valid to:
2/19/2015 9:59:59 PM

Subject:
CN=SqueakyChocolate, O=SqueakyChocolate, STREET=12902 Dorathea Terrace, L=Poway, S=CA, PostalCode=92064, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B696A8829DC1E0486236AF86C6DC0B70

File PE Metadata
Compilation timestamp:
1/9/2013 5:27:39 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:x35TsiX9ULeAjPHLPIy4orby4kXetBrdwLos9Pc6:ZX9wjLrPIy4orCCEPD

Entry address:
0x25E6

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 46, 4A, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 40, B7, 0B, 10, 89, 0D, 3C, B7, 0B, 10, 89, 15, 38, B7, 0B, 10, 89, 1D, 34, B7, 0B, 10, 89, 35, 30, B7, 0B, 10, 89, 3D, 2C, B7, 0B, 10, 66, 8C, 15, 58, B7, 0B, 10, 66, 8C, 0D, 4C, B7, 0B, 10, 66, 8C, 1D, 28, B7, 0B, 10, 66, 8C, 05, 24, B7, 0B, 10, 66, 8C, 25, 20, B7, 0B, 10, 66, 8C, 2D, 1C, B7, 0B, 10, 9C, 8F, 05, 50, B7...
 
[+]

Code size:
621.5 KB (636,416 bytes)

Remove SQLite.Interop.dll - Powered by Reason Core Security