RSShared.dll

RSShared

RadarSync

The library RSShared.dll has been detected as malware by 1 anti-virus scanner.
Publisher:
Vedisoft  (signed by RadarSync)

Product:
RSShared

Version:
1.0.0.0

MD5:
a0a420ba8f542dae28f9943da81063ae

SHA-1:
20d085527df635d1235e1a616bf37ec83a4d850f

SHA-256:
261bde97334ee731eb59894eb806117d556c606fee0811ba5143d0097af53021

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/27/2024 8:35:55 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Optional.RadarSync.DriverUpdater (L)
16.9.7.17

File size:
426.3 KB (436,568 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Vedisoft 2010

Original file name:
RSShared.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\radarsync\rsshared.dll

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
5/20/2010 2:00:00 AM

Valid to:
5/21/2011 1:59:59 AM

Subject:
CN=RadarSync, O=RadarSync, L=Highland Park, S=Illinois, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
382F2F14FD5F1B98676121F145541A

File PE Metadata
Compilation timestamp:
10/26/2010 2:52:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:g//kNHjF7kBf8IRk9z2wdUw5lhcf+RyhCjVkyH5ar6gN3I:g//ARYf8ISpJ628rfN3I

Entry address:
0x6AE1E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
420 KB (430,080 bytes)

Remove RSShared.dll - Powered by Reason Core Security