librtmp.dll

MD5:
9a836696f6c5edbcb42f32e28cf4d28d

SHA-1:
32a08eeb76b0a5d24e891116ae3415404151bf34

SHA-256:
a50a8085753a6817b4e49f2efbb2fa96a66b8593e6bd8467e0aa33d96b9a9048

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 3:25:28 PM UTC  (today)

File size:
179.1 KB (183,382 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\50miner\miners\cgminer\librtmp.dll

File PE Metadata
Compilation timestamp:
10/10/2010 2:16:10 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.56

CTPH (ssdeep):
3072:pNJfoGI0W1Mo0MnXDTHsnkG4ZGM6vW/GRE8/J6OFNcJ04TBfKE/ftbUq6NmP:1a0mX3snd4zERE8wOFN94TBS8ft2s

Entry address:
0x10C0

Entry point:
55, 89, E5, 83, EC, 38, 89, 5D, F4, 8B, 5D, 0C, 89, 75, F8, 8B, 75, 08, 89, 7D, FC, 8B, 7D, 10, 83, FB, 01, 74, 43, 89, 7C, 24, 08, 89, 5C, 24, 04, 89, 34, 24, E8, D3, 0E, 01, 00, 83, EC, 0C, 85, DB, 75, 19, 8B, 15, 00, 00, 46, 6A, 85, D2, 0F, 84, 8E, 00, 00, 00, 89, 45, E4, E8, 56, FF, FF, FF, 8B, 45, E4, 8B, 5D, F4, 8B, 75, F8, 8B, 7D, FC, 89, EC, 5D, C2, 0C, 00, 8D, 74, 26, 00, C7, 04, 24, 80, 00, 00, 00, E8, DC, 5E, 01, 00, 85, C0, A3, 00, 00, 46, 6A, 74, 62, C7, 00, 00, 00, 00, 00, A3, 10, 00, 46, 6A...
 
[+]

Code size:
89.5 KB (91,648 bytes)

The file librtmp.dll has been discovered within the following programs.

Drakan: 10th Anniversary Mod  by Shelim & Kronikarz
About 4% of users remove it
Panda Cloud Cleaner  by Panda Security
Publisher's description - “Panda Cloud Cleaner is an advanced disinfector based on Collective Intelligence (scanning in-the-cloud) that detects malware that traditional security solutions cannot detect. ”
pandacloudcleaner.pandasecurity.com/facebook
23% remove it
About 1% of users remove it
SiteVault Pro  by Amorphys Romania
www.site-vault.com
About 3% of users remove it
Total Commander (Remove or Repair)  by Ghisler Software GmbH
Total Commander is an Orthodox File Manager (OFM) for Windows that features include a built-in FTP client, tabbed interface, file compare, archive file navigation, and a versatile multi-rename tool with regular expression support.
www.ghisler.com
8% remove it
www.ultraget.com
About 6% of users remove it
 
Powered by Should I Remove It?

The file librtmp.dll has been seen being distributed by the following 5 URLs.

http://m.9d3e622df914d8de7f747b7b8b143c52.com/.../librtmp.dll

http://m.0839f88ae61efaa3e91fdf5b732b242f.com/.../librtmp.dll

Scan librtmp.dll - Powered by Reason Core Security