SearchEngineQuery.dll

MyHeritage Research

MyHeritage Ltd.

Publisher:
MyHeritage Ltd.  (signed and verified)

Product:
MyHeritage Research

Version:
1.0.2.0

MD5:
8aba50e4274dec8f80b41ef03e8de4f7

SHA-1:
393b65cee6810e8b3682562facab2c0209a46afd

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/23/2024 11:00:33 AM UTC  (today)

Scan engine
Detection
Engine version

Prevx
Heuristic: Suspicious File With Bad Parent Associations
3.0.3

File size:
309.8 KB (317,208 bytes)

Product version:
1.0.2.0

Copyright:
(c) MyHeritage Ltd. All rights reserved.

Original file name:
SearchEngineQuery.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Russian

Common path:
C:\windows\downloaded Program Files\searchenginequery.dll

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
3/23/2006 8:00:00 PM

Valid to:
3/23/2008 7:59:59 PM

Subject:
CN=MyHeritage Ltd., OU=Genealogy Research, O=MyHeritage Ltd., L=Bnei Atarot, S=Bnei Atarot, C=IL

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
7DADD5B70466FB89B428D4BACF906087

Registration
CLSID:
{6218F7B5-0D3A-48BA-AE4C-49DCFA63D400}

ProgID:
SearchEngineQuery.SEQueryObject.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
3/5/2007 4:31:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
6144:6zDK9gV6TQ5lTBKEJEuA4IKFqRFvMMPqsHperdjEFUY91e:6z29gVqQ5hBKEJjNIdaMPqsw5jCe

Entry address:
0x2D262

Entry point:
6A, 0C, 68, 30, DF, 03, 10, E8, 72, 01, 00, 00, 33, C0, 40, 89, 45, E4, 8B, 75, 0C, 33, FF, 3B, F7, 75, 0C, 39, 3D, 28, 58, 04, 10, 0F, 84, B3, 00, 00, 00, 89, 7D, FC, 3B, F0, 74, 05, 83, FE, 02, 75, 31, A1, A0, 70, 04, 10, 3B, C7, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D0, 89, 45, E4, 39, 7D, E4, 0F, 84, 85, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 22, FE, FF, FF, 89, 45, E4, 3B, C7, 74, 72, 8B, 5D, 10, 53, 56, FF, 75, 08, E8, 6D, 8C, FD, FF, 89, 45, E4, 83, FE, 01, 75, 0E, 3B, C7, 75, 0A, 53, 57, FF...
 
[+]

Entropy:
6.3248

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
228 KB (233,472 bytes)

ActiveX Install
Name:
{6218F7B5-0D3A-48BA-AE4C-49DCFA63D400}


Scan SearchEngineQuery.dll - Powered by Reason Core Security