DLLSuite.exe

DLLSuite

Beijing VSK Soft Development Co.,Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘DLLSuite2016’.
Publisher:
VskSoft  (signed by Beijing VSK Soft Development Co.,Ltd)

Product:
DLLSuite

Version:
9.0.0.9

MD5:
70da0fca10c0d94a37775b6c2c4f200d

SHA-1:
cad507fe6716f6263a33319438e6aef93d0c143d

SHA-256:
c32890085f12629985388a16f021a7bd3148802bbe2a1e5fb56e8798e641aa1b

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/27/2024 2:02:41 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
riskware program Program.Unwanted.1146
9.0.1.05190

File size:
6.8 MB (7,100,432 bytes)

Product version:
9.0

Original file name:
DLLSuite.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\dll suite\dllsuite.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/27/2015 3:00:00 AM

Valid to:
8/27/2018 2:59:59 AM

Subject:
CN="Beijing VSK Soft Development Co.,Ltd", OU=IT, O="Beijing VSK Soft Development Co.,Ltd", L=Beijing, S=Beijing, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
3479C317B97F62C28DF9417FACCD9C71

File PE Metadata
Compilation timestamp:
9/5/2016 5:45:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x372540

Entry point:
55, 8B, EC, 83, C4, F0, B8, AC, 62, 76, 00, E8, B4, 98, C9, FF, 33, C0, 55, 68, 05, 26, 77, 00, 64, FF, 30, 64, 89, 20, E8, 31, 24, C9, FF, 85, C0, 7E, 11, BA, 80, 5E, 79, 00, B8, 01, 00, 00, 00, E8, 7E, 24, C9, FF, EB, 0C, B8, 80, 5E, 79, 00, 33, D2, E8, 28, 5A, C9, FF, 8B, 15, 80, 5E, 79, 00, B0, 01, E8, 0F, 39, FF, FF, 84, C0, 75, 62, A1, A4, F4, 77, 00, 8B, 00, E8, 6B, E9, D6, FF, A1, 04, ED, 77, 00, 8B, 00, 8B, 50, 58, A1, 88, F2, 77, 00, 8B, 00, E8, 21, 69, DE, FF, A1, A4, F4, 77, 00, 8B, 00, B2, 01...
 
[+]

Entropy:
6.0469

Developed / compiled with:
Microsoft Visual C++

Code size:
3.4 MB (3,610,624 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DLLSuite2016

Command:
C:\Program Files\dll suite\dllsuite.exe


Scan DLLSuite.exe - Powered by Reason Core Security