libeay32.dll

The OpenSSL Toolkit

LLC

libeay32.dll is the libeay32.dll binary is part of the OpenSSL Project used to implement Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols for the included program and is recompiled by LLC . The library libeay32.dll, “OpenSSL Shared Library” by LLC has been known to be a potentially unwanted program that has been detected by 1 anti-malware scanner. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
The OpenSSL Project, http://www.openssl.org/  (signed by LLC )

Product:
The OpenSSL Toolkit

Description:
OpenSSL Shared Library

Version:
1.0.2c

MD5:
f3240105b49d1dc060d3c5845cb6d597

SHA-1:
e8c407bc0244577765d8697e3c6f45ed4cbbf5a9

Scanner detections:
1 / 68

Status:
Inconclusive but possibly unwanted  (It is part of a common redistributable library)

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/15/2024 3:05:35 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Common.PartOf.OpenSSLPackaged.PUP.Amonitize
16.5.27.10

File size:
2.4 MB (2,516,016 bytes)

Product version:
1.0.2c

Copyright:
Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.

Original file name:
libeay32.dll

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\{random}.tmp\x64\libeay32.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
8/14/2015 4:00:00 AM

Valid to:
1/1/2016 3:59:59 AM

Subject:
CN="LLC ""YUNITEKH SOFT""", O="LLC ""YUNITEKH SOFT""", STREET="BASTIONNA str., 15", L=Kyyiv, S=Kyyiv, PostalCode=01014, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
1EE1A5FD1A4E113F50CC79C1B5C0E6D3

File PE Metadata
Compilation timestamp:
6/15/2015 10:52:06 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
49152:XAyRGtlqWUVwASO+WajSRnNBi//v00QjUgwYcZ4AL/cFcIU6ihUHgJSwMPab6Y6s:KoNeQ4ghKi+2gJSwlb6Y5

Entry address:
0x15DEC0

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 83, FA, 01, 49, 8B, F8, 8B, DA, 48, 8B, F1, 75, 05, E8, 4F, CF, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 83, FE, FF, FF, CC, CC, CC, 48, 89, 5C, 24, 20, 89, 4C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, CA, 48, 8B, DA, E8, C7, CC, FF, FF, 8B, 4B, 18, F6, C1, 82, 48, 63, F8, 75, 1D, E8, 27, 9E, FF, FF, C7, 00, 09, 00, 00, 00, 83, 4B, 18, 20, 83, C8, FF, 48, 8B, 5C, 24, 48, 48, 83, C4, 20, 5F...
 
[+]

Code size:
1.4 MB (1,513,984 bytes)

Scan libeay32.dll - Powered by Reason Core Security