zlib1.dll

MD5:
614c881f48c8bccdcc54123664d23e67

SHA-1:
3770cc0b9d13ec3e09bd85607ef38144ba8c67ef

SHA-256:
36b64624816712d89eaf3bdda69a6690fd4840f0e6733e66de343e8ecafa4f00

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/23/2024 10:22:52 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/GameHack.AIY potentially unsafe application
8.0.319.0

File size:
508 KB (520,192 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\zlib1.dll

File PE Metadata
Compilation timestamp:
7/8/2016 10:17:32 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:oc+IVsKsyFFtOE40tBxRUYy/moT4Aa7sxQeeaQee7QeesQeeqOQeehQee6bQoGZ5:r+3IHOE4CnRUYcDTr2QoG/fHXhnUuCO

Entry address:
0xB092

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 34, 68, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, B8, D4, 06, 10, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, BC, D4, 06, 10, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, 8B, 3B, 00, 00, 85, C0, 75, 06, B8, 20, D6, 06, 10, C3, 83, C0, 08, C3, E8, 78, 3B, 00, 00, 85, C0, 75...
 
[+]

Code size:
309.5 KB (316,928 bytes)

The file zlib1.dll has been seen being distributed by the following URL.

Scan zlib1.dll - Powered by Reason Core Security