zlib1.dll

zlib

zlib1.dll is the zLib Compression Library used for lossless data-compression. The file has been seen being downloaded from e406148b51.pw and multiple other hosts.
Product:
zlib

Description:
zlib data compression library

Version:
1.2.8

MD5:
e4d7dd0a413519b21621ccb7d1d78fa4

SHA-1:
b2300402703433109cee85fd9f70e81bf867c319

SHA-256:
f4b42f671cf34329584afe4193c311dbb2a0396524499a23819467431a2b673d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 5:34:08 PM UTC  (today)

File size:
110.5 KB (113,166 bytes)

Product version:
1.2.8

Copyright:
(C) 1995-2013 Jean-loup Gailly & Mark Adler

Original file name:
zlib1.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\easeus\traypopup\zlib1.dll

File PE Metadata
Compilation timestamp:
6/22/2013 11:23:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.22

CTPH (ssdeep):
1536:9QmTxWI4MkO0r5qNfB//HI3sEgLezANeZ9GM8UnToIfBIOVIOam+qhsJm:9QmlqMkOM5qNMsOzAq9GgTBfrfah7Jm

Entry address:
0x1058

Entry point:
55, 89, E5, 57, 56, 53, 83, EC, 2C, 8B, 75, 08, 8B, 5D, 0C, 8B, 7D, 10, 83, FB, 01, 74, 3D, 89, 7C, 24, 08, 89, 5C, 24, 04, 89, 34, 24, E8, 75, DD, 00, 00, 83, EC, 0C, 85, DB, 75, 19, 8B, 15, 00, C0, E9, 62, 85, D2, 0F, 84, 84, 00, 00, 00, 89, 45, E4, E8, 64, FF, FF, FF, 8B, 45, E4, 8D, 65, F4, 5B, 5E, 5F, C9, C2, 0C, 00, 8D, 76, 00, C7, 04, 24, 80, 00, 00, 00, E8, 2C, 29, 01, 00, A3, 00, C0, E9, 62, 85, C0, 74, 63, C7, 00, 00, 00, 00, 00, A3, 04, C0, E9, 62, A1, 40, 96, E9, 62, 85, C0, 74, 14, 89, 7C, 24...
 
[+]

Entropy:
6.4850

Code size:
75.5 KB (77,312 bytes)

The file zlib1.dll has been seen being distributed by the following 14 URLs.

http://e406148b51.pw/algo/x11/.../zlib1.dll

http://6d1a0563f2.pw/algo/x11/.../zlib1.dll

Scan zlib1.dll - Powered by Reason Core Security