{afbf9f1a-8ee8-4c77-af34-c647e37ca0d9}.1.ver0x00000000000001a3.db

Qt5

Bandoo Media Inc

The file {afbf9f1a-8ee8-4c77-af34-c647e37ca0d9}.1.ver0x00000000000001a3.db, “C++ application development framework.” by Bandoo Media Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Digia Plc and/or its subsidiary(-ies)  (signed by Bandoo Media Inc)

Product:
Qt5

Description:
C++ application development framework.

Version:
5.3.2.0

MD5:
234ea7734f6f25a5f3d935d39cd8ac45

SHA-1:
641cf30bd5572faf329defb37b9ccd51fdda73c6

SHA-256:
b04728898d163f51c0abd0fc123d109b6bac0db8700cce5d4313a6a3cbe9a4c8

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 12:59:42 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
17.3.14.9

File size:
90.2 KB (92,368 bytes)

Product version:
5.3.2.0

Copyright:
Copyright (C) 2014 Digia Plc and/or its subsidiary(-ies).

Original file name:
Qt5MultimediaWidgets.dll

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\caches\{afbf9f1a-8ee8-4c77-af34-c647e37ca0d9}.1.ver0x00000000000001a3.db

Digital Signature
Authority:
thawte, Inc.

Valid from:
10/19/2015 2:00:00 AM

Valid to:
10/5/2016 1:59:59 AM

Subject:
CN=Bandoo Media Inc, O=Bandoo Media Inc, L=Panama City, S=Panama, C=PA

Issuer:
CN=thawte SHA256 Code Signing CA - G2, O="thawte, Inc.", C=US

Serial number:
6B956A6578BE9947ED82830D03DF2E2E

File PE Metadata
Compilation timestamp:
9/11/2014 5:37:35 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x99D6

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, F8, 04, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, 6A, 14, 68, 30, ED, 00, 10, E8, 5B, 04, 00, 00, 83, 65, FC, 00, FF, 4D, 10, 78, 3A, 8B, 4D, 08, 2B, 4D, 0C, 89, 4D, 08, FF, 55, 14, EB, ED, 8B, 45, EC, 89, 45, E4, 8B, 45, E4, 8B, 00, 89, 45, E0, 8B, 45, E0, 81, 38, 63, 73, 6D, E0, 74, 0B, C7, 45, DC, 00, 00, 00, 00, 8B, 45, DC, C3, E8, 35, 05, 00, 00, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 51, 04, 00, 00, C2, 10...
 
[+]

Entropy:
6.5821

Code size:
36.5 KB (37,376 bytes)