System.Windows.Interactivity.dll

System.Windows.Interactivity

Iminent

This is the SIEN AppScion Installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The module System.Windows.Interactivity.dll by Iminent has been detected as a potentially unwanted program by 3 anti-malware scanners. The program is a setup application that uses the SIEN SuperInstall installer.
Publisher:
Microsoft Corporation  (signed by Iminent)

Product:
System.Windows.Interactivity

Version:
2.0.20525.0

MD5:
c9a294820b286fb893437f15807a7fe0

SHA-1:
4497dd94d885e6dc4a92cc47c5edab42491ecd19

SHA-256:
1175633dbed75b26ca88d09d0dfdef7575c760b93c83da50e0cce59f4060e611

Scanner detections:
3 / 68

Status:
Potentially unwanted

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/26/2024 8:35:27 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Toolbar.Iminent (variant)
10.10500

Reason Heuristics
PUP.Sien.Iminent.Bundler (M)
16.2.12.3

VIPRE Antivirus
Iminent
24530

File size:
44.1 KB (45,176 bytes)

Product version:
2.0.20525.0

Copyright:
Copyright (c) Microsoft Corporation. All rights reserved.

Original file name:
System.Windows.Interactivity.dll

File type:
Dynamic link library (Win32 DLL)

Bundler/Installer:
SIEN SuperInstall

Language:
Language Neutral

Common path:
C:\Program Files\iminent\system.windows.interactivity.dll

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
1/31/2012 10:55:45 AM

Valid to:
3/2/2014 10:55:45 AM

Subject:
CN=Iminent, O=Iminent, L=Paris, S=France, C=FR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214EA925C07E01E1C06B597DD4B36FAA8B

File PE Metadata
Compilation timestamp:
5/26/2010 3:12:04 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:bMazwAgR8/XJ665bKZdxuB8DCuL5enM7JxKjuMlZCZN+R0E7EdIILvbi68:b3wBccZdxuB8mQen6JxKjrlMZgR0EoNe

Entry address:
0xB0AE

Entry point:
FF, 25, 00, 20, 20, 3B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
36.5 KB (37,376 bytes)

Remove System.Windows.Interactivity.dll - Powered by Reason Core Security