u/Cortex_Gaming

Inspecting a DLL file trying to figure out if it really is malware

Virus Total : https://www.virustotal.com/gui/file/4a7063b95d7278f4002e3ef74606f429c5a69ddb2de6e60cdf12234004d23e38/detection

Kapersky : https://opentip.kaspersky.com/4A7063B95D7278F4002E3EF74606F429C5A69DDB2DE6E60CDF12234004D23E38/results?tab=upload

Hybrid Analysis : https://hybrid-analysis.com/sample/4a7063b95d7278f4002e3ef74606f429c5a69ddb2de6e60cdf12234004d23e38

This is the Github where it was downloaded from : https[:]//github[.]com/YimMenu/YimMenuV2

My reasoning for why it may not be a virus:

It is a modification for a game, and with that I expect a couple false positives minimum, but I've also checked plenty of sources (such as the ones listed above) and the community around this mod.

Any constructive advice or info is appreciated

I don't think I'm asking for technical support, just second opinions on this, or possibly some tools I can use to better analyze the file.

reddit.com
u/Cortex_Gaming — 7 days ago

I have a DLL that I'm trying to see if it's a virus or not. Here are my scans

Virus Total : https://www.virustotal.com/gui/file/4a7063b95d7278f4002e3ef74606f429c5a69ddb2de6e60cdf12234004d23e38/detection

Kapersky : https://opentip.kaspersky.com/4A7063B95D7278F4002E3EF74606F429C5A69DDB2DE6E60CDF12234004D23E38/results?tab=upload

Hybrid Analysis : https://hybrid-analysis.com/sample/4a7063b95d7278f4002e3ef74606f429c5a69ddb2de6e60cdf12234004d23e38

This is the Github where it was downloaded from : https[:]//github[.]com/YimMenu/YimMenuV2

It's a well known download, and I believe it's likely not a virus but I want some more final opinions.

reddit.com
u/Cortex_Gaming — 7 days ago

Unsure about a DLL File for a game mod menu

  1. I downloaded it from the official source : https[:]//github[.]com/YimMenu/YimMenuV2/releases/tag/nightly

  2. I asked the community who some are familiar with the same menu, here's what they said on my post:

"Youre fine if you are downloading it from the actual source"
"Thats safe, mod menus that use injection always have false positives"
"
20-30+ at least, its the same with popular mod menus no need to worry about it" (Referring to how many detections there's supposed to be)

  1. However, I found 39/71 malicious flags on virustotal

https://www.virustotal.com/gui/file/4a7063b95d7278f4002e3ef74606f429c5a69ddb2de6e60cdf12234004d23e38/detection

My concern is, I've downloaded many DLL files for mods for both GTA and RDR2, but never have seen this many reports, but a lot of them are generic

If anybody could I would like some opinions from the community here

reddit.com
u/Cortex_Gaming — 9 days ago

Yimmenuv2 flagged by 34/68 on virustotal I know it's supposed to have some flags but in my experience with DLLs not that many

IVe downloaded dozens of dll files none of them had had that many flags on virustotal, constant blocking from my PC and browser, is something up with it? Can others confirm or something?

reddit.com
u/Cortex_Gaming — 9 days ago

What menu will allow a heist leader to give all participants 100% and auto complete the heist?

Because I was just doing a heist and someone did that I wanna know

reddit.com
u/Cortex_Gaming — 10 days ago