hulatoo.ffupdate.dll

Live Sargent

The module hulatoo.ffupdate.dll by Live Sargent has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Live Sargent  (signed and verified)

Version:
1.0.6134.19058

MD5:
2859957daa503258631eb8e605e65488

SHA-1:
fa6e323b0301babc267bc55701402ee7252d6c7d

SHA-256:
b12e6b5e6c6dc305db7a87cbaa9bc7321ddef3346e5c4f8ed1edff29b6c5cfef

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/16/2024 9:41:37 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.yontoo (M)
17.3.15.9

File size:
556.2 KB (569,536 bytes)

Product version:
1.0.6134.19058

Original file name:
2016101718.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\hulatoo\bin\plugins\hulatoo.ffupdate.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/4/2016 4:00:00 AM

Valid to:
3/5/2017 3:59:59 AM

Subject:
CN=Live Sargent, O=Live Sargent, L=San Diego, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0392914C138041393017DF6856B46FEE

File PE Metadata
Compilation timestamp:
10/17/2016 10:35:22 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

Entry address:
0x8AF36

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
548 KB (561,152 bytes)

Remove hulatoo.ffupdate.dll - Powered by Reason Core Security