core.dll

9-lab MRT

9-Lab

Publisher:
9-lab LLC  (signed by 9-Lab)

Product:
9-lab MRT

Description:
9-lab Malware Removal Tool

Version:
1.0.0.39

MD5:
b9d953c26d1bda5aa5c974f573739ac1

SHA-1:
4cfb503acffcf179d4eebf4f4fd3e6a2c52cbe60

SHA-256:
b9a585b46a3e18d906b0bb28883a52530b00970afbc6eb1e12251b5ff83b78a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 1:59:38 AM UTC  (today)

File size:
2.6 MB (2,749,888 bytes)

Product version:
1.0.0.39-beta

Copyright:
Copyright © 2012-2015, 9-lab LLC. All rights reserved.

Original file name:
core.dll

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Program Files\9-lab\removal tool\core.dll

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
12/24/2014 3:00:00 AM

Valid to:
1/23/2017 2:59:59 AM

Subject:
CN=9-Lab, O=9-Lab, L=Kiev, S=Ukraine, C=UA

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
1848D0B7BE06C62579E9C2A728671D49

File PE Metadata
Compilation timestamp:
2/10/2016 1:52:09 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:YdSnkBpp2avFzO7FEBkSUFnKUPsLzcpL+pwT8k/AsBR97q:YYn4hFzO7FpSWLcNSxq

Entry address:
0x223A9C

Entry point:
55, 8B, EC, 83, C4, C0, B8, 98, 5D, 61, 00, E8, F4, 80, DE, FF, B8, 90, 5D, 61, 00, A3, 5C, 3C, 63, 00, B8, 01, 00, 00, 00, E8, D0, 22, FF, FF, E8, EB, 39, DE, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,238,976 bytes)

The file core.dll has been discovered within the following program.

About 5% of users remove it
 
Powered by Should I Remove It?

Scan core.dll - Powered by Reason Core Security