ssl3.dll

Network Security Services

ArcadeTwist

ssl3.dll is the Mozilla Network Security Services (NSS) library is designed to support cross-platform development of security-enabled client and server applications, NSS provides a complete open-source implementation of the crypto libraries and is recompiled by ArcadeTwist. The module ssl3.dll by ArcadeTwist has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. Note, this is a common distributed file and although it has been detected it might not be a threat is un-coupled from its distribution source.
Publisher:
Mozilla Foundation  (signed by ArcadeTwist)

Product:
Network Security Services

Description:
NSS SSL Library

Version:
3.13.6.0

MD5:
d674734b156045e7d3e4fe17046b6edb

SHA-1:
10de6e52db52bb7d7c4d9ff5c38a42abe605d47f

SHA-256:
5ffe0fc6a773f8a0725883d2e71a3712bc8ea3cfb157ac42f516c1db3be6187e

Scanner detections:
1 / 68

Status:
Adware

Explanation:
This is the Mozilla Network Security Services (NSS) library is designed to support cross-platform development of security-enabled client and server applications, NSS provides a complete open-source implementation of the crypto libraries. While the file itself is not dangerous, it is part of a program that has been detected.

Analysis date:
12/26/2024 5:23:26 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.GameVance (M)
16.8.3.16

File size:
230.1 KB (235,624 bytes)

Product version:
3.13.6.0

Original file name:
ssl3.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\arcadetwist\cat\ssl3.dll

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
1/19/2015 6:00:00 PM

Valid to:
1/19/2017 5:59:59 PM

Subject:
CN=ArcadeTwist, O=ArcadeTwist, L=Irvine, S=California, C=US

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
285C56079C0C7E91CD8726B42C0AF1B6

File PE Metadata
Compilation timestamp:
9/12/2012 8:06:37 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:4HyfSIU6o2oWb6xIlXD/4itRcv6krPPxjxL6rw1gxxR8PUCYbKu50H1hs4Ix/jiG:2dQOsD/NSLvgRXJ7yYpTBJKRlNy

Entry address:
0x22573

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, D8, 22, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 57, 8B, 7D, 08, 33, C0, 83, C9, FF, F2, AE, 83, C1, 01, F7, D9, 83, EF, 01, 8A, 45, 0C, FD, F2, AE, 83, C7, 01, 38, 07, 74, 04, 33, C0, EB, 02, 8B, C7, FC, 5F, C9, C3, 6A, 0C, 68, 40, 28, 03, 10, E8, D7, 0F, 00, 00, 83, 65, E4, 00, 8B, 75, 08, 3B, 35, 90, 6C, 03, 10, 77, 22, 6A, 04, E8, 6F, 0F, 00, 00, 59, 83, 65, FC...
 
[+]

Entropy:
6.7158

Code size:
159.5 KB (163,328 bytes)

Remove ssl3.dll - Powered by Reason Core Security