Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

12, 0, 128, 0 10.00%
12, 0, 114, 0 10.00%
12, 0, 105, 0 20.00%
12, 0, 97, 0 20.00%
12, 0, 90, 0 10.00%
12, 0, 90, 0 30.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
OpenProcessToken, ImpersonateLoggedOnUser, RegisterServiceCtrlHandlerW, CreateServiceW, SetServiceStatus, RegisterEventSourceW, ReportEventW, DeregisterEventSource, ControlService, DeleteService, OpenSCManagerW, OpenServiceW, CloseServiceHandle, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, RevertToSelf
kernel32.dll
MultiByteToWideChar, GetDriveTypeW, GetModuleFileNameW, FreeLibrary, LoadLibraryExW, GetModuleHandleW, WideCharToMultiByte, SetUnhandledExceptionFilter, DeleteFileW, GetTempFileNameW, GetTempPathW, GetProcAddress, LoadLibraryW, GetTickCount, CloseHandle, Module32NextW, Module32FirstW, CreateToolhelp32Snapshot, WriteFile, CreateFileW, IsBadReadPtr, GetFileAttributesW, CreateThread, WaitForSingleObject, GetCurrentProcess, GetCurrentProcessId, GetCurrentThreadId, QueryPerformanceCounter, ExitProcess, lstrcpyW, CreateEventW, SetEvent, GetShortPathNameW, ReadFile, SetFilePointerEx, SetEndOfFile, OutputDebugStringW, OpenProcess, SetFileAttributesW, SetThreadPriority, GetThreadPriority, GetCurrentThread, MapViewOfFile, OpenFileMappingW, UnmapViewOfFile, MoveFileExW, GetFileSize, lstrlenA, HeapFree, GetProcessHeap, IsValidCodePage, GetOEMCP, GetCPInfo, LoadLibraryA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, lstrcmpiW, InterlockedDecrement, InterlockedIncrement, GetLastError, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, RaiseException, lstrlenW, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CompareStringA, CompareStringW, SetEnvironmentVariableA, GetConsoleCP, Sleep, LCMapStringW, GetConsoleMode, LCMapStringA, GetStringTypeW, GetStringTypeA, FreeEnvironmentStringsA, CreateFileA, FlushFileBuffers, SetStdHandle, GetTimeZoneInformation, SetFilePointer, GetStartupInfoA, GetFileType, SetHandleCount, SetLastError, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetModuleFileNameA, GetStdHandle, HeapCreate, VirtualFree, GetCommandLineA, GetSystemTimeAsFileTime, IsDebuggerPresent, UnhandledExceptionFilter, TerminateProcess, VirtualQuery, GetSystemInfo, GetModuleHandleA, VirtualAlloc, VirtualProtect, RtlUnwind, HeapSize, HeapReAlloc, HeapAlloc, HeapDestroy, GetVersionExA, GetThreadLocale, GetLocaleInfoA, GetACP, InterlockedExchange, GetExitCodeThread, GetVersion
ole32.dll
CoRegisterClassObject, CoRevokeClassObject, CoImpersonateClient, CoInitializeEx, CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoUninitialize, CoSuspendClassObjects, CoCreateInstance, CoResumeClassObjects, CoRevertToSelf, StringFromGUID2
rpcrt4.dll
NdrDllUnregisterProxy, NdrDllRegisterProxy, NdrCStdStubBuffer2_Release, NdrDllCanUnloadNow, NdrDllGetClassObject, NdrOleAllocate, NdrOleFree, IUnknown_QueryInterface_Proxy, IUnknown_AddRef_Proxy, IUnknown_Release_Proxy, NdrStubForwardingFunction, NdrStubCall2, RpcMgmtSetServerStackSize
shlwapi.dll
PathIsNetworkPathW
user32.dll
GetMessageW, DispatchMessageW, MessageBoxW, LoadStringW, CharNextW, TranslateMessage, PostThreadMessageW, UnregisterClassA
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wtsapi32.dll
WTSSendMessageW
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
ServiceMain
ThreatScanner_CreateInstance
ThreatScanner_CreateInstanceEx
ThreatScanner_DeleteException
ThreatScanner_DestroyInstance
ThreatScanner_EnumerateDatabaseRecords
ThreatScanner_GetDatabaseInformation
ThreatScanner_GetLicenseInformation
ThreatScanner_GetOption
ThreatScanner_GetScanStatistics
ThreatScanner_GetVersion
ThreatScanner_Initialize
ThreatScanner_InitializeEx
ThreatScanner_InitializeMemoryScan
ThreatScanner_InitializeMemoryScanEx
ThreatScanner_ScanBuffer
ThreatScanner_ScanMemory
ThreatScanner_ScanObject
ThreatScanner_ScanObjectByHandle
ThreatScanner_ScanPath
ThreatScanner_ScanStream
ThreatScanner_SetEnginesUnloadCallback
ThreatScanner_SetHashCallback
ThreatScanner_SetIntOption
ThreatScanner_SetObjectCallback
ThreatScanner_SetPasswordCallback
ThreatScanner_SetScanCallback
ThreatScanner_SetScanCallback2
ThreatScanner_SetScanPriority
ThreatScanner_SetStringOption
ThreatScanner_Uninitialize
ThreatScanner_UninitializeMemoryScan

scan.dll

BitDefender by BitDefender SRL (Signed)

Remove scan.dll
Version:   12, 0, 90, 0
MD5:   067bb95616722e5aadfabc53b16fb920
SHA1:   da55023145307f5434a3ac4614e17d16643241d2
SHA256:   368f8fb92f604e1c1df6cddf0350029e0c2e447d814c4c0fd4793cd75c662a94

Overview

scan.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by BitDefender SRL which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:scan.dll
Publisher:S.C. BitDefender S.R.L
Product name:BitDefender
Description:BitDefender ThreatScanner
Typical file path:C:\Program Files\common files\bitdefender\bitdefender threat scanner\scan.dll
File version:12, 0, 90, 0
Size:403 KB (412,672 bytes)
Certificate
Issued to:BitDefender SRL
Authority (CA):VeriSign
Expiration date:Saturday, January 7, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Hosted services
Runs as a shared service under the Windows svcHost
  • Shared name is 'scan'
  • Shared name is 'scan'

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 60.00%
Windows 7 Ultimate 20.00%
Windows Vista Home Premium 10.00%
Windows 8 Pro 10.00%

Distribution by countryDistribution by country

United States installs about 20.00% of BitDefender.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 60.00%
Hewlett-Packard 40.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE