RSShared.dll

RSShared

RadarSync

The library RSShared.dll has been detected as malware by 1 anti-virus scanner.
Publisher:
Vedisoft  (signed by RadarSync)

Product:
RSShared

Version:
1.0.0.0

MD5:
6249c787dee9789e5832334d56280f71

SHA-1:
51591481722cf831f71885444831f285a7309048

SHA-256:
80831e927d9125c574e89e3611d5dd5cb4023134f47ba87fd13a05cee5548aea

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/27/2024 7:40:33 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Optional.RadarSync.DriverUpdater (L)
16.7.25.19

File size:
520.7 KB (533,160 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Vedisoft 2010

Original file name:
RSShared.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\radarsync\rsshared.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/16/2011 7:00:00 AM

Valid to:
5/20/2012 6:59:59 AM

Subject:
CN=RadarSync, O=RadarSync, L=Highland Park, S=Illinois, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
21C0A661B6DC7A88F376DB8C90E62175

File PE Metadata
Compilation timestamp:
1/30/2012 7:35:48 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:EGfeHYEx5YaLYYKe8SFK+uwwDvN2m+XUHSt:ET4EzLYYKe8SFoV2m+XUHSt

Entry address:
0x832FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.8499

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
517 KB (529,408 bytes)

Remove RSShared.dll - Powered by Reason Core Security