wodAppUp.DLL

wodAppUpdate Component (64 bit)

Secure Plus d.o.o.

Publisher:
WeOnlyDo Software  (signed by Secure Plus d.o.o.)

Product:
wodAppUpdate Component (64 bit)

Description:
wodAppUpdate Component

Version:
1, 5, 7, 162

MD5:
b4f0c382d442b5120ffec5023b39d13b

SHA-1:
858a793ef2797288a22841020c3833b4c14b38f6

SHA-256:
832df61cdcda47d05c459b22b4b14ca2fabe6969489b75b13209fd6d75c08cb7

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 7:54:16 PM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Adware.BetterSurf
8.16.01.03.08

File size:
493.6 KB (505,496 bytes)

Product version:
1, 5, 7, 162

Copyright:
Copyright 2006-2013 WeOnlyDo

Trademarks:
Copyright 2006-2013 WeOnlyDo

Original file name:
wodAppUp.DLL

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Windows\System32\wodappup.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
4/24/2012 8:00:00 AM

Valid to:
4/25/2013 7:59:59 AM

Subject:
CN=Secure Plus d.o.o., O=Secure Plus d.o.o., STREET=Ruzina 9, L=Osijek, S=HR, PostalCode=31000, C=HR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
526B392364AB8A96FAE0321291074606

Registration
CLSIDs:
{40C94FC6-C109-460E-B425-91B068D2DC0D}, {49A09BDC-BD7B-4669-B8C5-22005A62E847}, {805DA757-66E9-4F61-A079-5D4AE926E558}, {9A1FF7C7-5B39-4E74-A58F-3F27DD3EEE6D}, {A9F435BC-0734-4CB2-BC97-E1001A3B9D77}, {C2F30F39-600A-477B-B05C-57788F6C1F28}

ProgIDs:
WeOnlyDo.UpdMessage.1, WeOnlyDo.wodAppUpdateCom.1, WeOnlyDo.UpdMessages.1, WeOnlyDo.UpdProcesses.1, WeOnlyDo.UpdFile.1, WeOnlyDo.UpdFiles.1, WeOnlyDo.UpdProcess.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
2/24/2013 8:12:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:81YUNwbc0xvMWUYta4bmvx3x5LJY4twTgAw+A/TbAB7b/Pa:81YUNwbMWFa4bKx3vwTg5Lbqq

Entry address:
0x1F9AF

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 33, 7B, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 6A, 0C, 68, A0, B3, 03, 10, E8, 66, DA, FF, FF, 6A, 0E, E8, 74, 03, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, CC, 38, 04, 10, BA, C8, 38, 04, 10, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, E8, B4, FF, FF, 59, FF, 76, 04, E8, DF, B4, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00...
 
[+]

Entropy:
6.5746

Code size:
184.5 KB (188,928 bytes)

Scan wodAppUp.DLL - Powered by Reason Core Security