xperr.dll

New IT Limited

This is part of a bundled installer which provides applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The module xperr.dll by New IT Limited has been detected as adware by 2 anti-malware scanners.
Publisher:
New IT Limited  (signed and verified)

MD5:
c5a89d736ea7b5d38850a2ab4f43917f

SHA-1:
5d5cc30531f7eba4005507d251eca39e01387e0e

SHA-256:
d50fef2782b4459806bf22f417e8b0601106f9babad6ed85c330c02223c21c60

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
5/14/2025 8:41:23 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Packed.Unknown
17705

Reason Heuristics
PUP.NewITLimited.F
14.3.8.0

File size:
135 KB (138,200 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\4sync\xperr.dll

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
11/4/2013 9:10:10 AM

Valid to:
11/16/2013 10:30:34 AM

Subject:
CN=New IT Limited, O=New IT Limited, L=Nicosia, S=Nicosia, C=CY

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2775184265BF42

File PE Metadata
Compilation timestamp:
7/23/2012 10:37:41 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
1536:yTpLX3TWi/m0JgAA9Gg7+zc2Xgy04V1avmeVk1xfvsF3DNOYSj+AXS:EpLny7PXnLDkPuBGj+

Entry address:
0x1B374

Entry point:
55, 8B, EC, 83, C4, C0, B8, F8, 93, 41, 00, E8, 20, CD, FE, FF, E8, 9B, 9F, FE, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1041

Developed / compiled with:
Microsoft Visual C++

Code size:
105 KB (107,520 bytes)

Remove xperr.dll - Powered by Reason Core Security