Panda_URL_Filteringc.Vdll file report

MD5 fa6f0d80abb9c33d9f2467e3097b3af8
Latest seen 2022-07-11 23:33:04 (3 years ago)
First seen 2017-07-11 11:08:11 (8 years ago)
Size 361 KB
Publisher Visicom Media Inc.
Signed by Visicom Media Inc.

Why it matters

Evidence available for this file

Detection

No final classification is available yet.

Timeline

First seen 2017-07-11 11:08:11 (8 years ago); latest analysis 2022-07-11 23:33:04 (3 years ago).

Publisher context

Company metadata: Visicom Media Inc.. Product metadata: Anti-phishing Domain Advisor (Powered by Panda Security).

Digital signature

Signed by Visicom Media Inc.. The signature is reported as valid, but signed files can still be bundled or abused.

Aliases

This hash has appeared under multiple file names, which can happen with repackaging, bundling, or deliberate renaming.

Observed locations

ThreatInfo has seen this file in user or system paths listed below. Unexpected locations increase the need for local verification.

Recommended action

What to do next

  1. Use the hash and metadata below to verify the exact file identity.
  2. Review publisher, signature, paths, and PE details for inconsistencies.
  3. Run a local scan if the file appears unexpectedly or starts with Windows.

Panda_URL_Filteringc.Vdll is a Windows file recorded in the ThreatInfo database. It is associated with Anti-phishing Domain Advisor (Powered by Panda Security). The reported company name is Visicom Media Inc.. The current detection status is Undefined, based on the latest analysis from 2022-07-11 23:33:04 (3 years ago).

ThreatInfo does not have a final classification for this file yet. Use the technical details below to compare the hash, size, signature, and observed locations with the copy found on your device.

Product Name: Anti-phishing Domain Advisor (Powered by Panda Security)
Company Name: Visicom Media Inc.
MD5: fa6f0d80abb9c33d9f2467e3097b3af8
Size: 361 KB
First Published: 2017-07-11 11:08:11 (8 years ago)
Latest Published: 2022-07-11 23:33:04 (3 years ago)
Status: Undefined (on last analysis)
Analysis Date: 2022-07-11 23:33:04 (3 years ago)
Signed By: Visicom Media Inc.
Status: Valid

The signature on Panda_URL_Filteringc.Vdll is reported as valid. A valid signature helps confirm publisher identity, but it does not automatically make the file safe if the installer was bundled, abused, or downloaded from an untrusted source.

%programfiles%\panda security url filtering
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%

ThreatInfo has observed Panda_URL_Filteringc.Vdll in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

Panda_URL_Filteringc.dll
PANDA_URL_FILTERINGC.del
Panda_URL_Filteringc.Vdll

This hash has been seen with multiple file names. Alternate names can appear when software is updated, copied between folders, packed by an installer, or deliberately renamed to avoid recognition. Compare the exact MD5 above before assuming two names refer to the same file.

9.4%
9.2%
6.2%
5.5%
5.3%
4.6%
3.4%
3.2%
3.0%
2.8%
2.5%
2.5%
2.5%
2.1%
2.1%
2.1%
2.1%
2.1%
1.6%
1.6%
1.6%
1.6%
1.4%
1.4%
1.4%
1.4%
1.4%
1.1%
0.9%
0.9%
0.9%
0.9%
0.9%
0.7%
0.7%
0.7%
0.7%
0.7%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%

The strongest geographic signal for this file is Spain with 9.4% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 62.1%
Windows 7 29.0%
Windows 8.1 5.9%
Windows 8 1.6%
Windows Embedded 8.1 0.9%
Windows Vista 0.5%

The most common operating system signal for Panda_URL_Filteringc.Vdll is Windows 10 with 62.1% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

Panda_URL_Filteringc.Vdll is identified as pe for 64 systems. The subsystem is Windows CUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows CUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000180000000
Entry Address: 0x0002396c

PE Sections:

Name Size of data MD5
.text 226816 f4ae8205a935c8ac5d2cc510ab57a3d4
.rdata 78336 29402fb23b43135d90500684022a1c80
.data 9216 364082e59a578df7ab3c7bbd0d9d69d5
.pdata 13312 1582e3f52a32d3b5fdf6bcea31222f5a
.rsrc 26112 c99f5ee234ff54dc425639564df3d7d8
.reloc 9216 5ab3fa877d5dc2933da2dc9151bf0c9a

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information: