msaddndr.dll

AddInDesigner Object Library

Microsoft Corporation

Publisher:
Microsoft Corporation

Product:
AddInDesigner Object Library

Description:
AddInDesigner

Version:
6.00.8169

MD5:
fd31cb4288912ff4f4e2216894e8d2e0

SHA-1:
e670b891157fbf19318a6027db6e00a028815283

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/1/2025 8:24:21 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.Ramnit-1847
0.98/23207

File size:
144 KB (147,456 bytes)

Product version:
6.00.8169

Copyright:
Copyright © 1987-1998 Microsoft Corp.

Trademarks:
Microsoft® is a registered trademark of Microsoft Corporation. Windows(TM) is a trademark of Microsoft Corporation

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\common files\designer\msaddndr.dll

Registration
CLSIDs:
{AC0714F6-3D04-11D1-AE7D-00A0C90F26F4}, {AC0714F7-3D04-11D1-AE7D-00A0C90F26F4}

ProgIDs:
MSAddnDr.AddInDesigner.1, MSAddnDr.AddInInstance.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
6/18/1998 8:27:25 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.2

Entry address:
0x15000

Entry point:
60, E8, 00, 00, 00, 00, 5D, 8B, C5, 81, ED, 32, 6F, 01, 20, 2B, 85, 50, 72, 01, 20, 89, 85, 4C, 72, 01, 20, B0, 00, 86, 85, 9E, 74, 01, 20, 3C, 01, 0F, 85, DE, 02, 00, 00, 8B, 85, 4C, 72, 01, 20, 2B, 85, 58, 72, 01, 20, 8B, 00, 89, 85, EA, 73, 01, 20, 8B, 85, 4C, 72, 01, 20, 2B, 85, 5C, 72, 01, 20, 8B, 00, 89, 85, F2, 73, 01, 20, 83, BD, F2, 73, 01, 20, 00, 0F, 84, A9, 02, 00, 00, 83, BD, EA, 73, 01, 20, 00, 0F, 84, 9C, 02, 00, 00, 8D, 85, 8D, 74, 01, 20, 50, FF, 95, EA, 73, 01, 20, 83, F8, 00, 0F, 84, 86...
 
[+]

Entropy:
6.8374

Packer / compiler:
ASPack v1.08.04

Code size:
54.5 KB (55,808 bytes)

Automation Object
CLSID:
{AC0714F6-3D04-11D1-AE7D-00A0C90F26F4}

CLSID name:
Addin Class


Scan msaddndr.dll - Powered by Reason Core Security