gbpdistutil.dll

BANCO SANTANDER BRASIL S.A.

Publisher:
BANCO SANTANDER BRASIL S.A.  (signed and verified)

MD5:
4485dcc044fb5d71a3d2aa4ba5c92b46

SHA-1:
a452bd4f41bc09920d19cd9d6c7461908331a695

SHA-256:
3d5f7b2a3f7ba6785ffc26918e36455cb4b336586c934bc76d27d89f9a565bbb

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/26/2024 1:51:45 AM UTC  (today)

Scan engine
Detection
Engine version

Bitdefender
Gen:Trojan.Heur.LP.hC6@aauDZ5ki
1.0.20.1230

Emsisoft Anti-Malware
Gen:Trojan.Heur.LP.hC6@aauDZ5ki
8.16.09.02.03

G Data
Gen:Trojan.Heur.LP.hC6@aauDZ5ki
16.9.22

MicroWorld eScan
Gen:Trojan.Heur.LP.hC6@aauDZ5ki
17.0.0.738

File size:
126.6 KB (129,656 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\gbpdistutil.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/30/2011 9:00:00 PM

Valid to:
8/30/2013 8:59:59 PM

Subject:
CN=BANCO SANTANDER BRASIL S.A., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=BANCO SANTANDER BRASIL S.A., L=SAO PAULO, S=SAO PAULO, C=BR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
253059D43D8AE55665C6D9BF9A92104F

File PE Metadata
Compilation timestamp:
5/6/2013 10:31:32 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:WmuPTjG+EIFLUWXr0t0abkelxNqsYOazn:WmK2MrrMb+8cn

Entry address:
0x35FCE

Entry point:
9C, 9C, 68, AB, 87, 63, E8, 9C, C7, 44, 24, 0C, CA, A7, 14, B1, 9C, C7, 44, 24, 0C, 25, 7B, 07, C6, 60, 8D, 64, 24, 2C, E9, AC, 29, 00, 00, 08, 42, 1D, 82, 3D, 16, F9, E8, 09, 27, FD, 7E, A8, 77, 73, A0, 7D, 47, 62, 76, B2, A7, E2, 9F, 1A, F3, 4E, B6, 92, 8A, 04, 23, DF, 0F, 2B, 77, 73, BC, B6, 82, 1D, 88, 36, B2, 4F, 05, E5, A3, 1D, 23, D6, F2, CB, 26, 49, 3A, 6D, C7, 8C, 97, EF, 87, 4A, 94, 7B, A5, 0F, AD, DB, 76, 34, A5, 50, 1B, 7A, 15, 70, 72, 98, 6B, 87, B7, 5B, 05, E5, BF, 39, 15, 58, 13, 33, 13, 2C...
 
[+]

Code size:
40 KB (40,960 bytes)

Scan gbpdistutil.dll - Powered by Reason Core Security