Gridinsoft Logo

The libmwlmgrimpl.dll File Analysis

Technical Analysis

File Name libmwlmgrimpl.dll
File Type
PE32+ executable (DLL) (console) x86-64, for MS Windows
Scanner Version 1.0.216.174
Database Version 2025-05-04 21:00:15 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
3,897,640
File Size (bytes)
2025-05-04
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
82c014e667e3eb34a700bdff7c9e922f
SHA1
06311959d7814bae1248556d804a0cf887f9d96d
SHA256
7873b50b9dff32e44e9da1c57e8c766092e530d9a11564abcb6047a386cd4309
SHA512
a00b33c53eaab334c6e936618c3a8c005583e5e2aaa6c93399baee8c31326def5a8c08be4a91573a865864b8746149b9b93c0817f468ef74e3de6da6b3e8816b
ImpHash
c3eba1a1699996a2e3b547bac30da370

PE Analysis

Basic Information

Image Base 0x180000000
Entry Point 0x1801c1aa4
Compilation Time 2085-09-13 17:13:19
Checksum 0x003bcabe (Actual: 0x003b893c)
OS Version 6.0
PEiD Signatures PE32+ executable (DLL) (console) x86-64, for MS Windows
PDB Path B:\matlab\bin\win64\matlab_startup_plugins\lmgrimpl\libmwlmgrimpl.pdb
Digital Signature The expected hash does not match the digest in SpcInfo
Imports 68 libraries
Exports 20 functions
Resources 1 Resources
Sections 14 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,983,879 bytes 1,984,000 bytes 6.19 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ C61950B82D6EE3B14353508326AC4E73
.textidx 0x001e6000 866,899 bytes 867,328 bytes 6.19 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 38C1384F92679954DCA249DEBD289D79
jkl.text 0x002ba000 35,664 bytes 35,840 bytes 6.21 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 3E98F19469A37F26D8B72A50C3EB6E40
jkl.bss 0x002c3000 200 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.rdata 0x002c4000 732,246 bytes 732,672 bytes 5.94 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 9AAC12EA6D43A8B895C6EF7CDECA982C
.data 0x00377000 105,976 bytes 75,776 bytes 4.93 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 534F6944EDACACDA486FA664EC857A87
.pdata 0x00391000 167,808 bytes 167,936 bytes 6.25 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D6C7652FBBD6A150B2B9069FC4930D21
jkl.data 0x003ba000 24 bytes 512 bytes 0.57 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BEAE8B3DE30711B6A05417F0A2F239A4
jkl.rdat 0x003bb000 928 bytes 1,024 bytes 7.21 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ AE37D0635AF473ED433C419F79074644
jkl.xdat 0x003bc000 3,140 bytes 3,584 bytes 4.42 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ CC2310DE2FC60ADB9438B7D42BBD5048
jkl.pdat 0x003bd000 2,052 bytes 2,560 bytes 3.29 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ C6309B419BD3EC47918CB0857E55E61F
.rsrc 0x003be000 672 bytes 1,024 bytes 4.09 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 2B34D3D4CD35A346C0AA429F0F616384
.reloc 0x003bf000 12,640 bytes 12,800 bytes 5.45 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 0ECFD2F871AEDDA77F82D714F0A0FED4
.crdata 0x003c3000 19 bytes 512 bytes 1.40 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 26042FD44D2C012336B20ED887A74310
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 1 (537 bytes)
Resource Type Count Total Size Percentage
None 1 537 bytes
100%

Certificate Chain Analysis

Certificate Information
Signing Date 10:43 AM 11/14/2023 (571 days ago)
Verification Status The digital signature of the object did not verify.
Signers The MathWorks, Inc.; DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1; DigiCert Trusted Root G4; DigiCert
Counter Signers DigiCert Timestamp 2023; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Certificate Chain Summary
DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 #1 Primary
Validity Period: 2021-04-29 00:00:00 → 2036-04-28 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 08 AD 40 B2 60 D2 9C 4C 9F 5E CD A9 BD 93 AE D9
The MathWorks, Inc. #2 Chain
Validity Period: 2023-05-15 00:00:00 → 2026-05-14 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 04 7D FD BB D1 FD 72 AE 6B D5 5E FB 36 2C AE E1
DigiCert Timestamp 2023 #3 Chain
Validity Period: 2023-07-14 00:00:00 → 2034-10-13 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 05 44 AF F3 94 9D 08 39 A6 BF DB 3F 5F E5 61 16
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #4 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted Root G4 #5 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

The expected hash does not match the digest in SpcInfo

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware