DFEngine.dll

DFEngine Dynamic Link Library

Double Fusion

Publisher:
DoubleFusion  (signed by Double Fusion)

Product:
DFEngine Dynamic Link Library

Description:
DFEngine Dynamic Link Library

Version:
4.5.0.28

MD5:
1fd2f20555594d45910e12ce8eff74eb

SHA-1:
9ba764ac8a942a0b98e0c98e58d6519ae6a0c0dd

SHA-256:
309215429dc783a096c8107947513ff3e868a1015ed579ac35b31d38644418ef

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/27/2024 2:02:19 AM UTC  (today)

Scan engine
Detection
Engine version

McAfee
W32/Patcher
5600.6280

File size:
868.6 KB (889,488 bytes)

Product version:
4.5.0.28

Copyright:
Copyright DoubleFusion (C) 2004

Original file name:
DFEngine.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\deus ex human revolution\dfengine.dll

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
9/11/2008 8:00:00 AM

Valid to:
9/12/2010 7:59:59 AM

Subject:
CN=Double Fusion, OU=Secure Application Development, O=Double Fusion, L=San Francisco, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
08EE56918B5DFCFF8CDA4C3598F60AC2

File PE Metadata
Compilation timestamp:
2/14/2010 7:53:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:qbcHUnxtPZbnP5IP5S25vb8qWNbihzWWBRx9H:qg0nxAS25qNXwxd

Entry address:
0x83844

Entry point:
E9, D7, F4, 01, 00, 75, 05, E8, 87, B5, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8D, 42, FF, 5B, C3, 8D, A4, 24, 00, 00, 00, 00, 8D, 64, 24, 00, 33, C0, 8A, 44, 24, 08, 53, 8B, D8, C1, E0, 08, 8B, 54, 24, 08, F7, C2, 03, 00, 00, 00, 74, 15, 8A, 0A, 83, C2, 01, 3A, CB, 74, CF, 84, C9, 74, 51, F7, C2, 03, 00, 00, 00, 75, EB, 0B, D8, 57, 8B, C3, C1, E3, 10, 56, 0B, D8, 8B, 0A, BF, FF, FE, FE, 7E, 8B, C1, 8B, F7, 33...
 
[+]

Entropy:
6.7883

Packer / compiler:
Xtreme-Protector v1.05

Code size:
648 KB (663,552 bytes)

Scan DFEngine.dll - Powered by Reason Core Security