Information about DotNet.Utilities.dll

DotNet.Utilities.dll

DotNet.Utilities.dll is a Windows file recorded in the ThreatInfo database. It is associated with DotNet.Utilities. The reported company name is http://www.sufeinet.com. The current detection status is Undefined, based on the latest analysis from 2021-06-10 20:32:24 (4 years ago).

ThreatInfo does not have a final classification for this file yet. Use the technical details below to compare the hash, size, signature, and observed locations with the copy found on your device.

Product Name: DotNet.Utilities
Company Name: http://www.sufeinet.com
MD5: fea638ba192e7c1d7620557eb1ee9ed6
Size: 457 KB
First Published: 2019-04-17 04:18:43 (7 years ago)
Latest Published: 2021-06-10 20:32:24 (4 years ago)
Status: Undefined (on last analysis)
Analysis Date: 2021-06-10 20:32:24 (4 years ago)
Signed By: 北京文安卓立科技有限公司
Status: Valid

The signature on DotNet.Utilities.dll is reported as valid. A valid signature helps confirm publisher identity, but it does not automatically make the file safe if the installer was bundled, abused, or downloaded from an untrusted source.

%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%
%programfiles%

ThreatInfo has observed DotNet.Utilities.dll in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

55.6%
22.2%
11.1%
11.1%

The strongest geographic signal for this file is Brazil with 55.6% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 7 66.7%
Windows 10 22.2%
Windows 8.1 11.1%

The most common operating system signal for DotNet.Utilities.dll is Windows 7 with 66.7% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

DotNet.Utilities.dll is identified as pe for 32 systems. The subsystem is Windows CUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00070d5e

.NET Info:

MVID: c23fc200-bb94-4b88-967b-b0b8040b4886
Typelib ID: 386b2f78-2195-4f7d-8970-36a85b003cfd

PE Sections:

Name Size of data MD5
.text 454144 3375a538d259f1d322f855b718b048d4
.sdata 4608 a8dba273d80e83b693b57212e90e920c
.rsrc 1024 1b5ef347135cd466db81389e4159d830
.reloc 512 b2df181a6dead6ee81d679ad1736bd93

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information: