libplc4.dll

Netscape Portable Runtime

Sendori, Inc

This is part of the Sendori web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. libplc4.dll is the Mozilla Portable Library C library and is recompiled by Sendori, Inc. The library libplc4.dll by Sendori, Inc has been known to be a potentially unwanted program that has been detected by 1 anti-malware scanner. Although a detection has been made for this resource, it is generally a commonly distributed 3rd-party library and is typically safe by itself.
Publisher:
Mozilla Foundation  (signed by Sendori, Inc)

Product:
Netscape Portable Runtime

Description:
PLC Library

Version:
4.9.2

MD5:
a262553cbe5bc951912c5b578c4bc0bd

SHA-1:
7694d8a2ec270694e2dc7f03bf70fe28d3907eeb

SHA-256:
6efde53bdd90ba75338549dbea7831efdea338f296d8c7e71a73849b30252c8f

Scanner detections:
1 / 68

Status:
Inconclusive but possibly unwanted  (It is part of a common redistributable library)

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 12:07:21 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Common.PartOf.PUP.Sendori.MozillaFoundation (M)
15.12.25.23

File size:
53.8 KB (55,072 bytes)

Product version:
4.9.2

Original file name:
libplc4.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\sendori\libplc4.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/11/2012 7:00:00 PM

Valid to:
4/4/2013 6:59:59 PM

Subject:
CN="Sendori, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Sendori, Inc", L=Oakland, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
28FA9F749BFC21C3FDFCFEFB6497011B

File PE Metadata
Compilation timestamp:
9/12/2012 8:04:21 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:E8Ti1h/2mVqk1YlCD4DfpEMMyWcMmvXTeFSPjORVWCTwHmDo/E4:/GlVP1tYE9yW7i6RMMAmC

Entry address:
0x2CA1

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 96, 26, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 56, 57, 33, F6, BF, C0, CC, 00, 10, 83, 3C, F5, 54, C0, 00, 10, 01, 75, 1E, 8D, 04, F5, 50, C0, 00, 10, 89, 38, 68, A0, 0F, 00, 00, FF, 30, 83, C7, 18, E8, FB, 26, 00, 00, 59, 59, 85, C0, 74, 0C, 46, 83, FE, 24, 7C, D2, 33, C0, 40, 5F, 5E, C3, 83, 24, F5, 50, C0, 00, 10, 00, 33, C0, EB, F1, 8B, FF, 53, 8B, 1D, 2C, 90, 00, 10, 56, BE, 50, C0, 00, 10, 57, 8B, 3E...
 
[+]

Entropy:
6.5015

Code size:
30 KB (30,720 bytes)

Scan libplc4.dll - Powered by Reason Core Security