× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: f7c0021b3d81dcafb8d0664d2a12720ad80f7d90c65d250535ca0e6ab639209b
File name: msvcp60.dll
Detection ratio: 10 / 56
Analysis date: 2016-04-04 03:17:44 UTC ( 3 years, 1 month ago ) View latest
Antivirus Result Update
Ad-Aware Trojan.Generic.16265117 20160403
AVG Win32/Heim 20160404
Baidu Win32.Trojan.WisdomEyes.151026.9950.9979 20160403
BitDefender Trojan.Generic.16265117 20160404
Bkav HW64.packed.2D87 20160402
Emsisoft Trojan.Generic.16265117 (B) 20160404
F-Secure Trojan.Generic.16265117 20160404
GData Trojan.Generic.16265117 20160404
Malwarebytes Trojan.Bedep 20160404
eScan Trojan.Generic.16265117 20160404
AegisLab 20160404
AhnLab-V3 20160403
Alibaba 20160401
ALYac 20160404
Antiy-AVL 20160403
Arcabit 20160403
Avast 20160404
Avira (no cloud) 20160403
AVware 20160404
Baidu-International 20160403
CAT-QuickHeal 20160402
ClamAV 20160402
CMC 20160401
Comodo 20160403
Cyren 20160404
DrWeb 20160404
ESET-NOD32 20160403
F-Prot 20160404
Fortinet 20160404
Ikarus 20160403
Jiangmin 20160404
K7AntiVirus 20160403
K7GW 20160404
Kaspersky 20160404
Kingsoft 20160404
McAfee 20160404
McAfee-GW-Edition 20160404
Microsoft 20160404
NANO-Antivirus 20160404
nProtect 20160401
Panda 20160403
Qihoo-360 20160404
Rising 20160404
Sophos AV 20160404
SUPERAntiSpyware 20160403
Symantec 20160331
Tencent 20160404
TheHacker 20160403
TrendMicro 20160404
TrendMicro-HouseCall 20160404
VBA32 20160401
VIPRE 20160404
ViRobot 20160404
Yandex 20160316
Zillya 20160403
Zoner 20160404
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem that targets 64bit architectures.
FileVersionInfo properties
Copyright
© Microsoft Corporation. All rights reserved.

Product Microsoft® Windows® Operating System
Original name sspicli.dll
Internal name sspicli.dll
File version 6.1.7601.17514 (win7sp1_rtm.101119-1850)
Description Security Support Provider Interface
PE header basic information
Target machine x64
Compilation timestamp 2012-09-16 19:26:29
Entry Point 0x00005F89
Number of sections 3
PE sections
Overlays
MD5 923ca0f048eb57165735cd33188f5a17
File type data
Offset 355328
Size 5568
Entropy 7.97
PE imports
GetShortPathNameW
SetConsoleNumberOfCommandsA
GetSystemInfo
WriteConsoleInputA
GetEnvironmentStringsA
CreateMailslotW
LCMapStringA
CreateTimerQueue
RemoveDirectoryA
GetConsoleCommandHistoryA
VerifyVersionInfoW
CreateFiber
FatalAppExitW
CreateActCtxW
SetConsoleCtrlHandler
LocalAlloc
SetTimeZoneInformation
GetNamedPipeHandleStateA
HeapQueryInformation
GetDateFormatW
_llseek
EnumerateLocalComputerNamesW
VirtualProtect
GetFullPathNameA
GetTapePosition
GetNamedPipeHandleStateW
SetConsoleLocalEUDC
RegisterWowBaseHandlers
EnumResourceTypesA
_lclose
LockFileEx
WideCharToMultiByte
WaitForDebugEvent
FindFirstFileExA
GetFirmwareEnvironmentVariableA
_hwrite
GetStartupInfoA
CloseHandle
ReleaseActCtx
SetComPlusPackageInstallStatus
SetCommTimeouts
EnumDateFormatsW
LocalFree
MoveFileA
GetProcessAffinityMask
InterlockedPushEntrySList
UTRegister
SetFileAttributesW
SetMessageWaitingIndicator
ReadConsoleOutputAttribute
FindWindowA
GetClientRect
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
ENGLISH US 1
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
5.2

LinkerVersion
8.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
6.1.7601.17514

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

CharacterSet
Unicode

InitializedDataSize
33792

EntryPoint
0x5f89

OriginalFileName
sspicli.dll

MIMEType
application/octet-stream

LegalCopyright
Microsoft Corporation. All rights reserved.

FileVersion
6.1.7601.17514 (win7sp1_rtm.101119-1850)

TimeStamp
2012:09:16 20:26:29+01:00

FileType
Win64 DLL

PEType
PE32+

InternalName
sspicli.dll

ProductVersion
6.1.7601.17514

FileDescription
Security Support Provider Interface

OSVersion
4.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
AMD AMD64

CompanyName
Microsoft Corporation

CodeSize
349696

ProductName
Microsoft Windows Operating System

ProductVersionNumber
6.1.7601.17514

FileTypeExtension
dll

ObjectFileType
Dynamic link library

File identification
MD5 40539661254bbd8dfeb9f8f22684c291
SHA1 2b53bc0984d49219ee4131b5fc686e7b39c0a17c
SHA256 f7c0021b3d81dcafb8d0664d2a12720ad80f7d90c65d250535ca0e6ab639209b
ssdeep
6144:Lvrq1DPwzd0Ph3fIWVkOAvZ8+g+lexV0P0IYR0TD/cETX5:LDG4B2hIWVkTx8+gxMGAcETX5

authentihash c1becd2e6c18b961a7fd61de68be61e1366eb2a3c3cfbcb75342a8b15d0d7009
imphash d1cbbbd06c8bac688a953061c00d97b3
File size 352.4 KB ( 360896 bytes )
File type Win32 DLL
Magic literal
PE32+ executable for MS Windows (DLL) (GUI) Mono/.Net assembly

TrID Win64 Executable (generic) (87.3%)
Generic Win/DOS Executable (6.3%)
DOS Executable Generic (6.3%)
Tags
64bits assembly pedll overlay

VirusTotal metadata
First submission 2016-04-04 03:17:44 UTC ( 3 years, 1 month ago )
Last submission 2016-04-04 03:17:44 UTC ( 3 years, 1 month ago )
File names msvcp60.dll
sspicli.dll
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!