xmp-ds.dll

Un4seen Developments

Publisher:
Un4seen Developments

Description:
XMPlay DirectSound plugin

Version:
rev.5a

MD5:
863ea9775251361cfcb018b5b5e1b909

SHA-1:
29f7af4cd69a71b8d10cf168f7cac21f9b6f0488

SHA-256:
cb18e86994daf7f6ccc1f23b8e95439faacc5dc0d6c6a796c46b560d82814a4b

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/23/2024 9:20:22 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsReno
1.3.0.4959

Comodo Security
Heur.Packed.Unknown
18186

Trend Micro House Call
TROJ_GEN.F47V0105
7.2.132

File size:
7 KB (7,173 bytes)

Copyright:
Copyright © 2007-2014

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
1/2/2014 1:43:19 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
192:xRx5hKzxhgXRjHWzrNrtfr0Oc2bMZ99ctEh6a:xRHhKzxhGRjHGvANb9ctEoa

Entry address:
0x7036

Entry point:
B8, 00, 70, 00, 10, 66, 9C, 60, 50, 8B, D8, 03, 00, 68, 6C, 0A, 00, 00, 6A, 00, FF, 50, 1C, 89, 43, 08, 68, 00, 00, 00, 10, 8B, 3C, 24, 8B, 33, 66, 81, C7, 80, 07, 8D, 74, 1E, 08, 89, 3B, 53, 8B, 5E, 10, B8, 80, 08, 00, 00, 56, 6A, 02, 50, 57, 6A, 09, 6A, 0A, 56, 6A, 04, 50, 57, FF, D3, 83, EE, 08, 59, F3, A5, 59, 66, 83, C7, 58, 81, C6, 8C, 00, 00, 00, F3, A5, FF, D3, 58, 8D, 90, 90, 01, 00, 00, 8B, 0A, 85, C9, 0F, 84, DE, C4, FF, FF, 83, C2, 14, 8B, 5A, F0, 85, DB, 74, EC, 8B, 04, 24, 8D, 34, 01, 8B, 6C...
 
[+]

Packer / compiler:
Petite v1.4

Code size:
16.9 KB (17,261 bytes)

The file xmp-ds.dll has been seen being distributed by the following URL.

Scan xmp-ds.dll - Powered by Reason Core Security