tsls64.dll

TNS-Global

VoiceFive Networks, Inc.

The component is part of the TMRG platform which will track various behaviors of web browsing habits including tracking sites and domains visited as well as ads clicked. The module tsls64.dll by VoiceFive Networks has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
VoiceFive, Inc.  (signed by VoiceFive Networks, Inc.)

Product:
TNS-Global

Version:
4.0.20.54 (Build 20.54)

MD5:
c024576982592f831b4856f64408be0d

SHA-1:
b64d95820f42d7758bc3f8f08a8083fdbacb8b2f

SHA-256:
d3dff03476b5f1be3cca3f23ecb30c65041d901ea517fd5b0d6395abd9724918

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/26/2024 12:24:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.TMRG.VoiceFiveNetworks (M)
16.2.11.3

File size:
1 MB (1,084,728 bytes)

Product version:
4.0.20.54 (Build 20.54)

Copyright:
Copyright © 2001-2004

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Windows\System32\tsls64.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/12/2012 2:00:00 AM

Valid to:
10/9/2015 1:59:59 AM

Subject:
CN="VoiceFive Networks, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="VoiceFive Networks, Inc.", L=Reston, S=Virginia, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7DF0080A576090E4868BAC6B0E459122

File PE Metadata
Compilation timestamp:
7/21/2015 6:16:02 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:kzwPDt1d5mcbJ2f/U1OSw8y77/63d2BD2BTBI:QwPDtH5myJ2f/UUTHwBTBI

Entry address:
0x906F4

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 6B, C5, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, AB, FE, FF, FF, CC, CC, CC, 40, 53, 48, 83, EC, 20, 45, 8B, 18, 48, 8B, DA, 4C, 8B, C9, 41, 83, E3, F8, 41, F6, 00, 04, 4C, 8B, D1, 74, 13, 41, 8B, 40, 08, 4D, 63, 50, 04, F7, D8, 4C, 03, D1, 48, 63, C8, 4C, 23, D1, 49, 63, C3, 4A, 8B, 14, 10, 48, 8B, 43, 10, 8B, 48, 08, 48, 03, 4B...
 
[+]

Code size:
739.5 KB (757,248 bytes)

Remove tsls64.dll - Powered by Reason Core Security