isxdl.dll

ISX Download DLL

OOO Russkie Internet Reshenija

isxdl.dll is the library ISX Download DLL is a plugin for ISX that allows the downloading of files from the Internet during the installation process used mostly with Inno Setup and is recompiled by OOO Russkie Internet Reshenija. The library isxdl.dll by OOO Russkie Internet Reshenija has been known to be a potentially unwanted program that has been detected by 1 anti-malware scanner. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
Bjørnar Henden  (signed by OOO Russkie Internet Reshenija)

Product:
ISX Download DLL

Description:
Download DLL

Version:
5, 1, 5, 0

MD5:
a40f34df6ab0dfff5f092cb26e4f6d05

SHA-1:
04fffdb860c561037dc0d2ef6bde6068657f657b

SHA-256:
d1d5e32c348a7a68f0665f692fbb294e0559f7edb2b696aaba519c9910089997

Scanner detections:
1 / 68

Status:
Inconclusive but possibly unwanted  (It is part of a common redistributable library)

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/27/2024 6:32:50 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Common.PartOf.PUP.OOORussk (M)
16.3.20.23

File size:
125 KB (128,040 bytes)

Product version:
5, 1, 5, 0

Copyright:
Copyright © 2002-2005

Original file name:
isxdl.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\isxdl.dll

Digital Signature
Authority:
Thawte, Inc.

Valid from:
12/29/2012 5:00:00 AM

Valid to:
2/28/2015 4:59:59 AM

Subject:
CN=OOO Russkie Internet Reshenija, OU=IT Department, O=OOO Russkie Internet Reshenija, L=Moscow, S=Moscow, C=RU

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
70E974F1D705599BD16FE4CFA4DA84A9

File PE Metadata
Compilation timestamp:
9/1/2008 5:45:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:7cKNuIngnBhODvyk9YKTxnQxykaIeDnKz1qkK9rB89QOuOwtm8feK8:AKkIgnXYaMzxnyGA48i/Owtm8d8

Entry address:
0xB467

Entry point:
83, 7C, 24, 08, 01, 75, 05, E8, DB, 63, 00, 00, FF, 74, 24, 04, 8B, 4C, 24, 10, 8B, 54, 24, 0C, E8, ED, FE, FF, FF, 59, C2, 0C, 00, 68, F0, AE, 16, 12, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, BC, 91, 17, 12, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 59, 5F, 5F, 5E, 5B, 8B, E5, 5D, 51, C3, C7, 01, 98, 56, 17, 12...
 
[+]

Code size:
79.5 KB (81,408 bytes)

Scan isxdl.dll - Powered by Reason Core Security