OxyPlot.dll

OOO

The module OxyPlot.dll by OOO has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
OxyPlot  (signed by OOO )

Product:
OxyPlot

Version:
2012.3.127.1

MD5:
fa387e81ec88623988923498a6a81e04

SHA-1:
46e8d70b87a286492f89c91133706b74c56b825a

SHA-256:
34267f28ff0e919cf7d6e4b0a58e375cffa559dc99bf60f8334a555401ae58d9

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
5/11/2024 11:13:32 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.9.2.7

File size:
290.4 KB (297,376 bytes)

Product version:
2012.3.127.1

Copyright:
Copyright (C) OxyPlot 2011.

Original file name:
OxyPlot.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\dynamics\retom-21\oxyplot.dll

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
11/27/2015 3:00:00 AM

Valid to:
12/19/2018 2:59:59 AM

Subject:
CN="OOO ""NPP ""DINAMIKA""", O="OOO ""NPP ""DINAMIKA""", L=Cheboksary, S=Cheboksary, C=RU

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
5F5A06A7374A1B0B8DD3B08620FB7E8F

File PE Metadata
Compilation timestamp:
8/20/2012 5:01:57 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:WKo0PqD7Cf5pmu3alhZaPAa7wI9v7r5zE4Imy9JNKN7qskQwOKVs04BlELBHM+Pc:UiwuE4Ux85i4Bqoe7xKi3ya5SLL0O6i

Entry address:
0x488CE

Entry point:
FF, 25, 00, 20, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
282.5 KB (289,280 bytes)

Remove OxyPlot.dll - Powered by Reason Core Security