DrWeb32.dll

Dr.Web

Nero AG

Scan DrWeb32.dll - Powered by Reason Core Security
Publisher:
Doctor Web, Ltd.  (signed by Nero AG)

Product:
Dr.Web (R)

Description:
Dr.Web (R) Virus-Finding Engine

Version:
4, 44, 0, 09170

MD5:
3edcaf15adb2f25eefeb5fd4f4eb0191

SHA-1:
60f453c69facd3822fe514d13702dd9544bc59a6

SHA-256:
a120b2330c61d1d3096173b1ca23ced0e21724c6ffac3f7caac7bad81b4828e6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/5/2016 5:43:52 PM UTC  (today)

File size:
2.3 MB (2,373,416 bytes)

Product version:
4, 44, 0, 09170

Copyright:
Copyright © Igor Daniloff, 1992-2007

Original file name:
DrWeb32.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\ProgramData\nero\nero\drweb\drweb32.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/20/2006 2:00:00 AM

Valid to:
6/23/2009 1:59:59 AM

Subject:
CN=Nero AG, OU=LEGAL DEPARTMENT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Nero AG, L=Karlsbad, S=Baden Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2A6AD44A4642FB73942CA2B92DEB3D34

File PE Metadata
Compilation timestamp:
9/17/2007 5:37:32 PM

OS version:
1.11

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.18

CTPH (ssdeep):
24576:rvBLvlpkARTxyEgwi6Or4hR1VTlHxM2DqS701WEjTYgr/ApVLb1Fuj1cdSAiIcwo:rpTwF201WPgzAv1YyJcbKOgfTM8E

Entry address:
0x18E3F0

Entry point:
B8, 01, 00, 00, 00, C2, 0C, 00, 8D, 80, 00, 00, 00, 00, 8B, D2, 8B, 44, 24, 04, 8A, 80, 10, 58, 60, 00, 24, 01, 25, FF, 00, 00, 00, C3, 8D, 80, 00, 00, 00, 00, 8D, 92, 00, 00, 00, 00, 8B, C0, 8B, 44, 24, 04, 8A, 80, 10, 58, 60, 00, 24, 40, 25, FF, 00, 00, 00, C3, 8D, 80, 00, 00, 00, 00, 8D, 92, 00, 00, 00, 00, 8B, C0, 8B, 44, 24, 04, 8A, 80, 10, 58, 60, 00, 24, 0C, 25, FF, 00, 00, 00, C3, 8D, 80, 00, 00, 00, 00, 8D, 92, 00, 00, 00, 00, 8B, C0, 8B, 44, 24, 04, 8A, 80, 10, 58, 60, 00, 24, 0D, 25, FF, 00, 00...
 
[+]

Packer / compiler:
Dr.Web Virus-Finding Engine

Code size:
1.6 MB (1,693,184 bytes)

Scan DrWeb32.dll - Powered by Reason Core Security