ssleay32.dll

The OpenSSL Toolkit

The OpenSSL Project, http://www.openssl.org/

ssleay32.dll is the OpenSSL Toolkit used to implement Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols for the included program. SSLeay is designed to provide cryptographic support functionality for SSL connections. The file has been seen being downloaded from lp6.bongacams24.com.
Publisher:
The OpenSSL Project, http://www.openssl.org/

Product:
The OpenSSL Toolkit

Description:
OpenSSL Shared Library

Version:
1.0.1h

MD5:
2a3a220a50972a9e78f10b5085204c3d

SHA-1:
9cdeba095777c261aec59548e2582b9d95587e59

SHA-256:
c873c0df4c854ef4f675dc931820db2913f640c8d846fdaacb8fbb5eb0cb9ac5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 11:22:03 PM UTC  (a few moments ago)

File size:
337 KB (345,088 bytes)

Product version:
1.0.1h

Copyright:
Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.

Original file name:
ssleay32.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Program Files\minergate\ssleay32.dll

File PE Metadata
Compilation timestamp:
7/28/2014 3:48:47 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
11.0

CTPH (ssdeep):
6144:uxqpwb+uy8oypquwuOSJp7kXEaMrirBUkDaLGqgpjildG2ZWcEmCzy0m5Du4KDV+:uxlb+uy8oYquJOEhkXEzOBUkeLGqgdib

Entry address:
0x3842C

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 49, 8B, F8, 8B, DA, 48, 8B, F1, 83, FA, 01, 75, 05, E8, 6B, 04, 00, 00, 4C, 8B, C7, 8B, D3, 48, 8B, CE, 48, 8B, 5C, 24, 30, 48, 8B, 74, 24, 38, 48, 83, C4, 20, 5F, E9, 03, 00, 00, 00, CC, CC, CC, 48, 8B, C4, 48, 89, 58, 08, 48, 89, 70, 10, 48, 89, 78, 18, 41, 56, 48, 83, EC, 30, 49, 8B, F0, 8B, FA, 4C, 8B, F1, BB, 01, 00, 00, 00, 89, 58, E8, 89, 15, A9, 9B, 01, 00, 85, D2, 75, 12, 39, 15, 8F, 9C, 01, 00, 75, 0A, 33, DB, 89, 58, E8, E9, CB, 00, 00...
 
[+]

Entropy:
6.1058

Code size:
223 KB (228,352 bytes)

The file ssleay32.dll has been seen being distributed by the following URL.

Scan ssleay32.dll - Powered by Reason Core Security