ebase.dll

EBASE

EMG Technology Limited

The module ebase.dll by EMG Technology Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program AirZip by EMG Technology Limited which is a potentially unwanted software program.
Publisher:
Woodtale Technology Inc.  (signed by EMG Technology Limited)

Product:
EBASE

Version:
1.0.86.8163

MD5:
3d2d413b72a2e4c4f74b73a688907878

SHA-1:
2b88bf7f08093b1a92cf8eef78183c2cc8f8ecd9

SHA-256:
633f3db0c2e499731f38248562d72ef57cf8e21aefd5d624279faef34e35f1d1

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/23/2024 7:21:18 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.3.9.23

File size:
656.1 KB (671,888 bytes)

Product version:
1.0.86.8163

Copyright:
Copyright (C) 2012

Original file name:
ebase.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\airzip\ebase.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/31/2013 1:20:50 AM

Valid to:
8/1/2014 1:20:50 AM

Subject:
CN=EMG Technology Limited, O=EMG Technology Limited, L=HongKong, S=HongKong, C=HK

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11214B00008DA514B60ED8EE5329E4DF7F28

File PE Metadata
Compilation timestamp:
10/14/2013 7:59:07 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:UwtoZdMXRgZ8Cxxhwjui3KATb/sj9o+N27kwW4TGphA44M+CoAaoUrS/2U1avJGR:RtoZdMXRgZtxxhni3K7j9oLk+GphARCb

Entry address:
0x61089

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 8B, 03, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, CC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 30, C4, 09, 10, 89, 0D, 2C, C4, 09, 10, 89, 15, 28, C4, 09, 10, 89, 1D, 24, C4, 09, 10, 89, 35, 20, C4, 09, 10, 89, 3D, 1C, C4, 09, 10, 66, 8C, 15, 48, C4, 09, 10, 66, 8C, 0D, 3C, C4, 09, 10, 66, 8C, 1D, 18, C4, 09, 10, 66, 8C, 05, 14, C4, 09, 10, 66, 8C, 25, 10, C4, 09, 10, 66, 8C, 2D, 0C, C4, 09, 10, 9C, 8F, 05, 40, C4...
 
[+]

Entropy:
6.4541

Code size:
458.5 KB (469,504 bytes)

The file ebase.dll has been discovered within the following program.

AirZip  by EMG Technology Limited
Publisher's description - “Airzip is a free and easy to use compression software that is based on 7-Zip technology. With its fast compression engine,Airzip is a powerful tool for unzipping Zip archives, creating Zip-compatible files and other archiving software.”
airzip.webssearches.com
About 60% of users remove it
 
Powered by Should I Remove It?

Remove ebase.dll - Powered by Reason Core Security