web.dll

Shanda Computer (Shanghai) Co., Ltd.

Publisher:
Shanda Computer (Shanghai) Co., Ltd.  (signed and verified)

Version:
1.0.0.19

MD5:
07da577dfb33c5a70287e4d8b939a544

SHA-1:
5fde15910c51ff39893b8a51bd521612c284a72d

SHA-256:
8aaeaf5310efdb447a8a771dc8b4fde92dc5ffd31acfec3fb7f9d6ac51391393

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 11:56:54 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Quick Heal
Trojan.Vilsel.ldp.n7
6.16.12.00

File size:
1.1 MB (1,186,152 bytes)

Product version:
1.0.0.0

File type:
Dynamic link library (Win32 DLL)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\web.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/13/2009 2:00:00 AM

Valid to:
7/14/2010 1:59:59 AM

Subject:
CN="Shanda Computer (Shanghai) Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Shanda Computer (Shanghai) Co., Ltd.", L=Shanghai, S=Shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
41DD9EE091EDB18FB5F2666307492AB4

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:vl0I1LlxVrvdvM89La+JUW5Q6Ol6rfUZjoXanhfrMl7nfA0lUortCoaigfY8Xq:vl0I1hx52MklwMZJnhQlTZUeMhY8Xq

Entry address:
0x96EC8

Entry point:
55, 8B, EC, 83, C4, C4, B8, E0, 69, 49, 00, E8, A4, F9, F6, FF, E8, BB, D4, F6, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6129

Developed / compiled with:
Microsoft Visual C++

Code size:
600 KB (614,400 bytes)

Scan web.dll - Powered by Reason Core Security