libgcc_s_seh-1.dll

Raberles Investments Ltd

The library libgcc_s_seh-1.dll has been detected as malware by 1 anti-virus scanner.
Publisher:
Raberles Investments Ltd  (signed and verified)

MD5:
b82e6fbe7da177c859f74e7e897acd60

SHA-1:
e388586100c46431bb6f7d8bd0cfdaf4c2f636e5

SHA-256:
97c8f90e0f1d470f2b1b863b778ce0718c29456e8bbea996485b65c27e576d31

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/25/2024 1:12:20 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.2.1.2

File size:
499.6 KB (511,576 bytes)

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\Program Files\icecream screen recorder\libgcc_s_seh-1.dll

Digital Signature
Authority:
COMODO CA Limited

Valid from:
6/22/2016 3:00:00 AM

Valid to:
6/23/2017 2:59:59 AM

Subject:
CN=Raberles Investments Ltd, O=Raberles Investments Ltd, STREET="3, Kyriakou Matsi fl.6", L=Limassol, S=Limassol, PostalCode=3040, C=CY

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
30F9592B2BD5B0D9527E443B7A92BC8D

File PE Metadata
Compilation timestamp:
7/31/2015 3:36:26 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
2.25

Entry address:
0x13D0

Entry point:
48, 83, EC, 48, 48, 8B, 05, E5, 05, 01, 00, 83, FA, 01, C7, 00, 00, 00, 00, 00, 74, 0A, 48, 83, C4, 48, E9, A1, FE, FF, FF, 90, 4C, 89, 44, 24, 38, 89, 54, 24, 34, 48, 89, 4C, 24, 28, E8, 1D, CD, 00, 00, E8, 38, D6, 00, 00, 4C, 8B, 44, 24, 38, 8B, 54, 24, 34, 48, 8B, 4C, 24, 28, 48, 83, C4, 48, E9, 71, FE, FF, FF, 90, 55, 48, 89, E5, 5D, C3, 66, 2E, 0F, 1F, 84, 00, 00, 00, 00, 00, 55, 48, 89, E5, 48, 83, EC, 20, 48, 83, 3D, 20, EC, 00, 00, 00, 74, 30, 48, 8D, 0D, B7, FB, 00, 00, FF, 15, E5, 5D, 01, 00, 48...
 
[+]

Entropy:
5.6423

Code size:
59 KB (60,416 bytes)

Remove libgcc_s_seh-1.dll - Powered by Reason Core Security