KMap.dll

Lao Script for Windows - Keyboard Manager

Tavultesoft Pty Ltd

The library KMap.dll has been detected as malware by 11 anti-virus scanners.
Publisher:
Lao Script for Windows  (signed by Tavultesoft Pty Ltd)

Product:
Lao Script for Windows - Keyboard Manager

Description:
KMap

Version:
6.03

MD5:
4bbe7a03986750853c5dd5331dd3e16b

SHA-1:
e88968c6bea42662e37f2d1ef41391c810e1d681

SHA-256:
0d28c179d18a0806eaedea037cc1e56bc7b686871f8e61a7aaf0e25057238ecb

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
12/28/2024 6:00:48 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:GenMalicious-BFP [Trj]
160503-1

AVG
Win32/Floxif.A
2015.0.4568

Dr.Web
Win32.FloodFix.7
9.0.1.05190

Emsisoft Anti-Malware
Win32.Floxif
11.5.0.6191

ESET NOD32
Win32/Floxif.H virus
8.0.319.0

F-Prot
W32/Floxif.B
4.6.5.141

F-Secure
Win32.Floxif.A
5.15.96

Kaspersky
Virus.Win32.Pioneer
15.0.0.562

Microsoft Security Essentials
Threat.Undefined
1.221.336.0

Norman
Win32.Floxif.A
19.05.2016 05:17:13

VIPRE Antivirus
Threat.4760052
49494

File size:
162.1 KB (166,037 bytes)

Product version:
6.03

Copyright:
Copyright © 2005 John M. Durdin

Original file name:
KMap.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\lswin\kmap.dll

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
12/8/2004 6:21:33 AM

Valid to:
12/8/2005 6:21:33 AM

Subject:
CN=Tavultesoft Pty Ltd, OU=Secure Application Development, O=Tavultesoft Pty Ltd, L=Hobart, S=Tasmania, C=AU

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3ED4E2

File PE Metadata
Compilation timestamp:
5/9/2005 5:13:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:SV/a0SeIcVq4IIn5OsQvVqRlkM4OAD/KLznBuB2JA2Bjg:rF1cVqFsQvMRlkM4RD/qzMfUk

Entry address:
0x23E0

Entry point:
E9, 26, 82, 00, 00, 0C, 8B, 45, 0C, 89, 45, F4, 83, 7D, F4, 00, 0F, 84, E4, 00, 00, 00, 83, 7D, F4, 01, 74, 05, E9, 1B, 01, 00, 00, 68, 2C, E4, 00, 10, 68, 46, 37, 02, 00, 6A, 00, 6A, 04, 6A, 00, 6A, FF, FF, 15, 6C, C0, 00, 10, A3, A8, EB, 00, 10, 83, 3D, A8, EB, 00, 10, 00, 75, 07, 33, C0, E9, F3, 00, 00, 00, FF, 15, 70, C0, 00, 10, 33, C9, 3D, B7, 00, 00, 00, 0F, 95, C1, 89, 4D, FC, 6A, 00, 6A, 00, 6A, 00, 6A, 02, 8B, 15, A8, EB, 00, 10, 52, FF, 15, 74, C0, 00, 10, A3, A4, EB, 00, 10, 83, 3D, A4, EB, 00...
 
[+]

Entropy:
7.0882

Packer / compiler:
Xtreme-Protector v1.05

Code size:
44 KB (45,056 bytes)

Remove KMap.dll - Powered by Reason Core Security