DLLSuite.exe

DLLSuite

Beijing VSK Soft Development Co.,Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘DLLSuite2016’.
Publisher:
VskSoft  (signed by Beijing VSK Soft Development Co.,Ltd)

Product:
DLLSuite

Version:
9.0.0.14

MD5:
325ba4bc009a9ad29ad10242a3de070f

SHA-1:
03e7fab93461c9426a6692200c0e6e85da32053e

SHA-256:
d12931f943e55e62f5a5e16ee2804c61a39ab99463f27f45313baf6fd0b85762

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/23/2024 10:14:31 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
riskware program Program.Unwanted.1146
9.0.1.05190

File size:
5.7 MB (5,986,320 bytes)

Product version:
9.0

Original file name:
DLLSuite.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\dll suite\dllsuite.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/26/2015 7:00:00 PM

Valid to:
8/26/2018 6:59:59 PM

Subject:
CN="Beijing VSK Soft Development Co.,Ltd", OU=IT, O="Beijing VSK Soft Development Co.,Ltd", L=Beijing, S=Beijing, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
3479C317B97F62C28DF9417FACCD9C71

File PE Metadata
Compilation timestamp:
3/6/2017 1:07:52 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x373544

Entry point:
55, 8B, EC, 83, C4, F0, B8, 68, 72, 76, 00, E8, B0, 88, C9, FF, 33, C0, 55, 68, 09, 36, 77, 00, 64, FF, 30, 64, 89, 20, E8, 2D, 14, C9, FF, 85, C0, 7E, 11, BA, 80, 6E, 79, 00, B8, 01, 00, 00, 00, E8, 7A, 14, C9, FF, EB, 0C, B8, 80, 6E, 79, 00, 33, D2, E8, 24, 4A, C9, FF, 8B, 15, 80, 6E, 79, 00, B0, 01, E8, C7, 38, FF, FF, 84, C0, 75, 62, A1, B4, 04, 78, 00, 8B, 00, E8, F7, D8, D6, FF, A1, 14, FD, 77, 00, 8B, 00, 8B, 50, 58, A1, 98, 02, 78, 00, 8B, 00, E8, 0D, 59, DE, FF, A1, B4, 04, 78, 00, 8B, 00, B2, 01...
 
[+]

Entropy:
6.7666

Developed / compiled with:
Microsoft Visual C++

Code size:
3.4 MB (3,614,208 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DLLSuite2016

Command:
C:\Program Files\dll suite\dllsuite.exe


Scan DLLSuite.exe - Powered by Reason Core Security