84427

CiscoEAPLEAP.dll

Supersoft

The file 84427, “Cisco LEAP Module” by Supersoft has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is also typically executed from the user's temporary directory.
Publisher:
Cisco LEAP Module  (signed by Supersoft)

Product:
CiscoEAPLEAP.dll

Description:
Cisco LEAP Module

Version:
1.0.19.0

MD5:
ad26d111e2bf74f08f93e2080b842e23

SHA-1:
ac4047e7dad07adc7db386e9009b8fd6a8f32604

SHA-256:
e9b5dacfd39f654a0216aadc5690f5d11da55c6a90cc1bcb4de681e3701f72fa

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/27/2024 7:32:03 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.8.20.16

File size:
212.7 KB (217,832 bytes)

Product version:
1.0.19.0

Copyright:
Copyright (C) 2006-2009

Original file name:
CiscoEAPLEAP.dll

Common path:
C:\users\{user}\appdata\local\temp\84427

Digital Signature
Signed by:

Authority:
Supersoft

Valid from:
9/30/2012 1:26:38 AM

Valid to:
12/31/2039 4:59:59 PM

Subject:
CN=Supersoft

Issuer:
CN=Supersoft

Serial number:
6B50254A40C7CFB14A405056B8F04272

File PE Metadata
Compilation timestamp:
2/4/2014 11:13:52 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:U983FdYP41H2hi76dUr5nSfzpc6cp0usrU7:Q+FCg1P76o5nSLpc64ek

Entry address:
0x11E0

Entry point:
55, 8B, EC, 81, EC, 74, 01, 00, 00, 33, C0, 74, 02, EB, FA, C7, 45, AC, 30, 00, 00, 00, 83, 65, B0, 00, 83, 65, B4, 00, 83, 65, B8, 00, 83, 65, BC, 00, 8B, 45, 08, 89, 45, C0, 68, 00, 7F, 00, 00, 6A, 00, FF, 15, 2C, 10, 40, 00, 89, 45, C4, 68, 00, 7F, 00, 00, 6A, 00, FF, 15, 38, 10, 40, 00, 89, 45, C8, C7, 45, CC, 06, 00, 00, 00, 83, 65, D0, 00, C7, 45, D4, B8, 10, 40, 00, 68, 00, 7F, 00, 00, 6A, 00, FF, 15, 2C, 10, 40, 00, 89, 45, D8, 8D, 45, AC, 50, FF, 15, 30, 10, 40, 00, 0F, B7, C0, 85, C0, 75, 07, 33...
 
[+]

Entropy:
6.4633

Developed / compiled with:
Microsoft Visual C++

Remove 84427 - Powered by Reason Core Security