sqlite3.dll

YAC Security Protection

Taiwan Shui Mu Chih Ching Technology Limited

sqlite3.dll is the native SQLite library to connect to and manage a local SQLite databases and is recompiled by Taiwan Shui Mu Chih Ching Technology Limited. The module sqlite3.dll by Taiwan Shui Mu Chih Ching Technology Limited has been detected as adware by 7 anti-malware scanners. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself. It is also typically executed from the user's temporary directory.
Publisher:
Elex do Brasil Participações Ltda  (signed by Taiwan Shui Mu Chih Ching Technology Limited)

Product:
YAC Security Protection

Description:
sqlite3

Version:
0.0.0.1

MD5:
7e2aca772dcda5b1ee26a3dfa4acdbb3

SHA-1:
2618ed694497667a5dce0d057754a9ab6d1d7ca9

SHA-256:
b7c374ece00f1e76f0c722df733a3623e878fb2d0baf2a672a738bd8f2703e1d

Scanner detections:
7 / 68

Status:
Adware

Explanation:
While this SQLite file itself is not dangerous, it is part of a program that has been detected as potentially unwanted or malicious.

Analysis date:
1/9/2025 7:25:04 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
7.11.30.172

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Adware.Mutabaha.229
9.0.1.05190

Malwarebytes
FraudTool.YAC
v2015.05.09.01

Panda Antivirus
PUP/Winzipper
15.05.09.01

Reason Heuristics
Common.PUP.Thinknice
15.4.2.13

Trend Micro House Call
Suspicious_GEN.F47V0404
7.2.129

File size:
389.2 KB (398,520 bytes)

Product version:
0.0.0.1

Copyright:
Copyright (c) 2011-2014 Elex do Brasil Participações Ltda

Original file name:
sqlite3.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\sqlite3.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/6/2015 7:19:12 AM

Valid to:
3/4/2016 10:26:37 AM

Subject:
CN=Taiwan Shui Mu Chih Ching Technology Limited, O=Taiwan Shui Mu Chih Ching Technology Limited, L=Taipei City, S=Taiwan, C=TW

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112127474DE010DA49D31D0EE8193EAC2D0E

File PE Metadata
Compilation timestamp:
11/11/2014 4:18:07 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:M07TzPRTGwRPrE2QMNgIyYgS2x27dwMXpE7:M03lN1rE27NgOgavXpe

Entry address:
0x4A646

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 33, 04, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 10, 68, D0, 52, 05, 10, E8, 3B, 01, 00, 00, 33, C0, 40, 8B, F0, 89, 75, E4, 33, DB, 89, 5D, FC, 8B, 7D, 0C, 89, 3D, 20, A0, 05, 10, 89, 45, FC, 85, FF, 75, 0C, 39, 3D, 20, E2, 05, 10, 0F, 84, D4, 00, 00, 00, 3B, F8, 74, 05, 83, FF, 02, 75, 38, A1, 50, C2, 04, 10, 85, C0, 74, 0E, FF, 75, 10, 57, FF, 75, 08, FF, D0, 8B, F0, 89, 75, E4, 85, F6, 0F, 84, B1, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
299 KB (306,176 bytes)

Remove sqlite3.dll - Powered by Reason Core Security