Gridinsoft Logo
File Icon

The Scan.dll (Malware Scan Library) File Analysis

Technical Analysis

File Name Scan.dll
File Type
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.217.174
Database Version 2025-06-01 20:00:19 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,039,936
File Size (bytes)
2025-06-01
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
7f820e18f787d8cd7cb1e6673d22851c
SHA1
6941cd04df72ca4cb16854b74b5afb090066f696
SHA256
9597ca6bc4a672a696542933d18bb9e4fb619695c6c9d46ba8b6d9fd4039e42c
SHA512
f459cf4eb5c10a13f079427bccd7414bac5220e59f0c3da8545761cabce7c5b6778cbf1021750b845c8951b2ab059f9fb846756c2b46eb6baa71744faf644ea9
ImpHash
ae3024454da0aa0a8df70f726c297f1a

PE Analysis

Basic Information

Icon
Hash: 5e9a4c759f49ddfa1f2d9005df60d40f
Fuzzy: 3b5d3c7d207e37dceeedd301e35e2e58
dHash: f0dcb6cbab3ab4b0
Image Base 0x00400000
Entry Point 0x004c9938
Compilation Time 2022-10-09 06:45:56
Checksum 0x0010ce1b (Actual: 0x0010ce89)
OS Version 5.0
PEiD Signatures PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
Digital Signature The expected hash does not match the digest in SpcInfo
Imports 16 libraries
Exports 8 functions
Resources 19 Resources
Sections 8 Sections

Version Information

CompanyName IObit
FileDescription Malware Scan Library
FileVersion 16.0.0.51
InternalName
LegalCopyright © IObit. All rights reserved.
LegalTrademarks IObit
OriginalFilename Scan.dll
ProductName Advanced SystemCare
ProductVersion 16.0.0.0
Comments
Last Compile 2022-10-09 14:45
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 817,976 bytes 818,176 bytes 6.48 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 810C3719EBF717338780209A91B1D7F7
.itext 0x000c9000 2,384 bytes 2,560 bytes 5.85 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 382BFDEF7C38A4C8BDEFC7C276088D04
.data 0x000ca000 47,748 bytes 48,128 bytes 6.89 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 41415029A0302CE7368E08D013BC0C60
.bss 0x000d6000 26,636 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x000dd000 14,222 bytes 14,336 bytes 5.25 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 260DC704A1D18C31CE61E33F1AD72047
.edata 0x000e1000 256 bytes 512 bytes 2.94 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0E1BCD13DEE07E090D7FF82451E85770
.reloc 0x000e2000 41,516 bytes 41,984 bytes 6.71 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ CDDA9EDA9FA8A1DDF60132DB80BE24F5
.rsrc 0x000ed000 93,340 bytes 93,696 bytes 6.55 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6825401F9BF03B7F101DB1EB5921A4EA
Entropy Analysis Alert

3 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 19 (92,116 bytes)
Resource Type Count Total Size Percentage
MAD 2 44,728 bytes
48.6%
RT_ICON 1 4,264 bytes
4.6%
RT_STRING 10 7,276 bytes
7.9%
RT_RCDATA 4 34,960 bytes
38%
RT_GROUP_ICON 1 20 bytes
0%
RT_VERSION 1 868 bytes
0.9%

Certificate Chain Analysis

Certificate Information
Product Advanced SystemCare
Description Malware Scan Library
File Version 16.0.0.51
Original Name Scan.dll
Signing Date 03:06 AM 12/13/2022 (905 days ago)
Verification Status The digital signature of the object did not verify.
Signers IObit CO., LTD; Sectigo RSA Code Signing CA; USERTrust RSA Certification Authority; Sectigo (AAA)
Counter Signers Sectigo RSA Time Stamping Signer #3; Sectigo RSA Time Stamping CA; USERTrust RSA Certification Authority; Sectigo (AAA)
Copyright © IObit. All rights reserved.
Certificate Chain Summary
IObit CO., LTD #1 Primary
Validity Period: 2021-03-25 00:00:00 → 2024-03-24 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 8B A1 F1 72 FD 50 BA 8D 4C 11 B7 4F FA C8 A2 82
USERTrust RSA Certification Authority #2 Chain
Validity Period: 2019-03-12 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 39 72 44 3A F9 22 B7 51 D7 D3 6C 10 DD 31 35 95
Sectigo RSA Code Signing CA #3 Chain
Validity Period: 2018-11-02 00:00:00 → 2030-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 1D A2 48 30 6F 9B 26 18 D0 82 E0 96 7D 33 D3 6A
Sectigo RSA Time Stamping CA #4 Chain
Validity Period: 2019-05-02 00:00:00 → 2038-01-18 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 30 0F 6F AC DD 66 98 74 7C A9 46 36 A7 78 2D B9
Sectigo RSA Time Stamping Signer #3 #5 Chain
Validity Period: 2022-05-11 00:00:00 → 2033-08-10 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 90 39 7F 9A D2 4A 3A 13 F2 BD 91 5F 08 38 A9 43

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

The expected hash does not match the digest in SpcInfo

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware