System.Data.SQLite.dll

System.Data.SQLite

SqueakyChocolate

System.Data.SQLite.dll is the .NET interop wrapper for the native SQLite library to connect to and manage a SQLite database and is recompiled by SqueakyChocolate. The module System.Data.SQLite.dll, “System.Data.SQLite Core” by SqueakyChocolate has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. Note, this is a common distributed file and although it has been detected it might not be a threat is un-coupled from its distribution source.
Publisher:
http://system.data.sqlite.org/  (signed by SqueakyChocolate)

Product:
System.Data.SQLite

Description:
System.Data.SQLite Core

Version:
1.0.84.0

MD5:
5a450acd426551b3b6d33823e3264494

SHA-1:
c19b0ef3ceacfa2fd57dacb09cd61d7f70083e17

SHA-256:
1e2528e1535a431ee879171047319215a4849a55774ff47d58a681416dbf115f

Scanner detections:
1 / 68

Status:
Adware

Explanation:
While this SQLite file itself is not dangerous, it is part of a program that has been detected as potentially unwanted or malicious.

Analysis date:
4/25/2024 9:51:40 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.installCore (M)
16.11.7.20

File size:
217.9 KB (223,112 bytes)

Product version:
1.0.84.0

Copyright:
Public Domain

Original file name:
System.Data.SQLite.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\system.data.sqlite.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
2/20/2012 12:00:00 AM

Valid to:
2/19/2015 11:59:59 PM

Subject:
CN=SqueakyChocolate, O=SqueakyChocolate, STREET=12902 Dorathea Terrace, L=Poway, S=CA, PostalCode=92064, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B696A8829DC1E0486236AF86C6DC0B70

File PE Metadata
Compilation timestamp:
1/9/2013 7:25:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:1xTIsxFNFGFOFwcGF6cmFWc0FWc8cIcKcUFJFpcNcHc7cbchFFc5cbc1czclFJF6:1qsxFNFGFOFwcGF6cmFWc0FWc8cIcKc7

Entry address:
0x3330E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
200 KB (204,800 bytes)

Remove System.Data.SQLite.dll - Powered by Reason Core Security