spup.dll

spup

Veristaff. Com Ltd

The module spup.dll by Veristaff. Com has been detected as adware by 3 anti-malware scanners.
Publisher:
Veristaff. Com Ltd  (signed and verified)

Product:
spup

Version:
1.0.0.0

MD5:
81bc1c23efd3f2d04dd8a82ba17dd6a4

SHA-1:
91b866e7a83de8d3ec1fbc7fa26930a799c54a09

SHA-256:
94507f5f913b1d2403e87116f956bd533979dbbbedcbd59500048e59a48f0325

Scanner detections:
3 / 68

Status:
Adware

Analysis date:
11/23/2024 6:51:12 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Generic
2017.0.2860

Reason Heuristics
PUP.Resoft.VeristaffCom (M)
16.1.19.10

Trend Micro House Call
Suspicious_GEN.F47V0807
7.2.19

File size:
11.1 KB (11,384 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2012

Original file name:
spup.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\smartbar\common\servicesplugins\spup.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/14/2014 8:37:25 AM

Valid to:
7/15/2015 8:37:25 AM

Subject:
CN=Veristaff. Com Ltd, O=Veristaff. Com Ltd, L=Herzliya, S=Herzliya, C=IL

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121327C47596D5E76D675A39A539249C1B5

File PE Metadata
Compilation timestamp:
8/17/2014 7:35:18 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
192:MfZ8B+HAj5P3a4hdw6YnLrb0hSbe+PjP3kxlq3I84z/n:MfZ8BNj5Pq4nPYnLr3PL0xIY

Entry address:
0x2D92

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 20, 00, 00, 0C, 00, 00, 00, 94, 3D, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2309

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
3.5 KB (3,584 bytes)

Remove spup.dll - Powered by Reason Core Security