zlib1.dll

MD5:
dfa57a92f8e7d09364262857c0849b09

SHA-1:
dba796f6196b2c7664793bfa32a707f37f7f1311

SHA-256:
a7654328d4d9ea7156c44fb6dd77ad736e48cab759d814f1088fa96691eb3bd2

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 6:19:00 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/GameHack.AIY potentially unsafe application
8.0.319.0

File size:
505.5 KB (517,632 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\zlib1.dll

File PE Metadata
Compilation timestamp:
7/5/2016 9:57:04 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:KgzXxS1seqzKV9khJUY3GXqDlzaQgHewR5iAR:aczfxGXqDh/g+wvi

Entry address:
0xA992

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 34, 68, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, B8, C4, 06, 10, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, BC, C4, 06, 10, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, 8E, 3B, 00, 00, 85, C0, 75, 06, B8, 20, C6, 06, 10, C3, 83, C0, 08, C3, E8, 7B, 3B, 00, 00, 85, C0, 75...
 
[+]

Code size:
307.5 KB (314,880 bytes)

The file zlib1.dll has been seen being distributed by the following URL.

Scan zlib1.dll - Powered by Reason Core Security