inetc.dll

inetc NSIS plug-in

LLC Mail.Ru

The library inetc.dll has been detected as malware by 1 anti-virus scanner.
Publisher:
LLC Mail.Ru  (signed and verified)

Product:
inetc NSIS plug-in

Version:
1.0.4.4

MD5:
2bbef8ea2fe4a051afe625b28e04182d

SHA-1:
92652ac499ebc262dc24215f77350d66be64e523

SHA-256:
be5ac9cc85c8c5b6bbf0824d84cb4f31b29f777b1161cf71db2cfd8dc5cd6e0f

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/22/2024 10:32:13 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.1.14.19

File size:
25.1 KB (25,752 bytes)

Product version:
1.0.4.4

Copyright:
Copyright © Takhir Bedertdinov

Original file name:
inetc.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\inetc.dll

Digital Signature
Signed by:

Authority:
LLC Mail.Ru

Valid from:
10/14/2015 8:45:29 PM

Valid to:
1/1/2040 12:59:59 AM

Subject:
CN=LLC Mail.Ru

Issuer:
CN=LLC Mail.Ru

Serial number:
A1AC1F0525FC5E904E0C263610190BDA

File PE Metadata
Compilation timestamp:
7/20/2014 5:18:35 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
384:gW4gLK82JvtosNCPhXKJ18hcEP1+f+pvMPbkdTg1Zahzs60Ac9khYLMkIX0+GbyK:gW4i/2JloB5IQ9AhkwZaKRuYic

Entry address:
0x2FFF

Entry point:
55, 8B, EC, 8B, 45, 08, A3, C4, 56, 00, 10, 33, C0, 40, 5D, C2, 0C, 00, 55, 8B, EC, 81, EC, 9C, 00, 00, 00, 53, 56, 57, 33, DB, 6A, 3F, 8D, 85, 65, FF, FF, FF, 53, 50, 88, 9D, 64, FF, FF, FF, E8, CC, DF, FF, FF, 6A, 3F, 8D, 45, A5, 53, 50, 88, 5D, A4, E8, BD, DF, FF, FF, 8B, 45, 14, 8B, 7D, 0C, A3, 34, 8C, 00, 10, 8B, 45, 10, 83, C4, 18, A3, 30, 8C, 00, 10, 33, C0, 57, 40, 6A, 40, 89, 3D, 38, 8C, 00, 10, 88, 1D, DD, 5A, 00, 10, 88, 1D, DC, 5A, 00, 10, 88, 1D, DB, 5A, 00, 10, 88, 1D, DA, 5A, 00, 10, 88, 1D...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
11 KB (11,264 bytes)

Remove inetc.dll - Powered by Reason Core Security