update.dll

Baidu PC Faster

Baidu Online Network Technology (Beijing)Co., Ltd

This file is installed with the program Baidu PC Faster.
Scan update.dll - Powered by Reason Core Security
Publisher:
Baidu Inc.  (signed by Baidu Online Network Technology (Beijing)Co., Ltd)

Product:
Baidu PC Faster

Description:
PC Faster Updater Library

Version:
4,0,11,71771

MD5:
a8b8763c64a0a24f50792f1a7596d99b

SHA-1:
e3e155a9568f581a8e0cef52a1d449d07f7ace45

SHA-256:
658402e6efb3313a1d6c3c4e4ad4e2db9459f6b0fc8c10fe49178cf4c435fbab

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/9/2016 12:36:47 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
ApplicUnsaf.Win32.AdWare.cinmus.145
17137

File size:
1.1 MB (1,195,200 bytes)

Product version:
4,0,11,71771

Copyright:
Copyright (C) 2012 Baidu, Inc. All rights reserved.

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\baidu security\pc faster\4.0.0.0\update.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/23/2012 5:00:00 PM

Valid to:
4/24/2015 4:59:59 PM

Subject:
CN="Baidu Online Network Technology (Beijing)Co., Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Baidu Online Network Technology (Beijing)Co., Ltd", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3BDB1994B98BBB19AB55A42337FA4F5C

File PE Metadata
Compilation timestamp:
5/30/2014 12:59:47 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:gr8y/n7W40pgfkt/iClaPxyfORwoBs1xC0BghNxqbMswtt9EZBbCD:ivD/stqjxyfORwoBs1xC0BghNxqbMswp

Entry address:
0x88A4A

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, B7, F1, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 6A, 0C, 68, E0, C4, 10, 10, E8, 23, 1B, 00, 00, 33, FF, 89, 7D, E4, 33, C0, 8B, 75, 0C, 3B, F7, 0F, 95, C0, 3B, C7, 75, 20, E8, 54, F3, FF, FF, C7, 00, 16, 00, 00, 00, 57, 57, 57, 57, 57, E8, 75, CC, FF, FF, 83, C4, 14, 83, C8, FF, E9, BC, 00, 00, 00, 56, E8, 57, 10, 00, 00, 59, 89, 7D, FC, F6, 46, 0C, 40, 75, 77, 56, E8, E5, F1, 00, 00, 59, 83, F8, FF, 74, 1B, 83, F8...
 
[+]

Entropy:
6.4582

Code size:
881.5 KB (902,656 bytes)

The file update.dll has been discovered within the following program.

Baidu PC Faster  by Baidu, Inc.
Publisher's description - “PC Faster makes your PC run like new again with four cleaning modes and more than 300 cleaning checkpoints. All together, it's the most comprehensive PC cleaning solution available.”
www.pcfaster.com/go.php?link=1&pos=about
42% remove it
 
Powered by Should I Remove It?

Scan update.dll - Powered by Reason Core Security