Information about Passport_x64.dll.vir
- File Details
- Overview
- Analysis
Passport_x64.dll.vir
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a89715cf4cfb3f36f7eff0e41174a47a |
Size: |
13 KB |
First Published: |
2017-05-28 18:12:48 (7 years ago) |
Latest Published: |
2021-08-23 20:42:26 (3 years ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2021-08-23 20:42:26 (3 years ago) |
Overview
Signed By: |
APN LLC |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%system%\config\systemprofile\appdata\local\microsoft\windows\inetcache\ie\asktoolbarinstaller-orj-spe[5].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv77lddxmzb.7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-avira-v78wuhci61.7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-avira-v7r4dev3nv.7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-orj-spe[6].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-orj-st-spe[2].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-orj-spe[2].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-orj-spe[1].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%sysdrive%\adwcleaner\quarantine\c\program files (x86)\askpartnernetwork\toolbar\tb_demo_sp |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-orj[10].7z\program files\askpartnernetwork\toolbar\{partnerid} |
Passport_x64.dll |
Passport_x64.dll.vir |
A0056240.dll |
|
13.5% |
|
|
11.5% |
|
|
9.9% |
|
|
6.3% |
|
|
6.3% |
|
|
5.7% |
|
|
4.7% |
|
|
4.2% |
|
|
4.2% |
|
|
3.6% |
|
|
3.6% |
|
|
2.6% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
1.6% |
|
|
1.6% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
Windows 7 |
80.0% |
|
Windows 8.1 |
11.3% |
|
Windows 10 |
7.2% |
|
Windows 8 |
1.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x000011d0 |
Name |
Size of data |
MD5 |
.text |
1536 |
70d3b41a9a13389cdd63f591405b1392 |
.rdata |
1536 |
1e16ee0affe227acd132c129be2fb93e |
.data |
512 |
ee8e428290ec42160c5e2a30f80215a5 |
.pdata |
512 |
23c09605e883740874afe1cae51cc77c |
.rsrc |
1536 |
57b9095f211e3693f07bfd8f0085395f |
.reloc |
512 |
c11794f0c5d114df5c9b96755bad84cb |