PE structurePE file structure

Import table
RegOpenKeyExA, RegQueryValueExA, RegCloseKey, CryptAcquireContextA, CryptCreateHash, CryptHashData, CryptGetHashParam, CryptDestroyHash, CryptReleaseContext, OpenSCManagerA, OpenServiceA, QueryServiceStatusEx, CloseServiceHandle, GetUserNameA
GetIpAddrTable, GetBestInterface
GetExitCodeThread, WaitForSingleObject, LeaveCriticalSection, CreateThread, CreateEventA, EnterCriticalSection, ExitThread, SetEvent, GetCurrentProcessId, ResetEvent, GetCurrentThreadId, InterlockedIncrement, GetTickCount, GetTimeFormatA, GetDateFormatA, GetSystemTime, GetLocalTime, Sleep, OpenEventA, GetSystemDirectoryW, CreateSemaphoreA, GetSystemInfo, CreateIoCompletionPort, WaitForMultipleObjectsEx, PostQueuedCompletionStatus, ReleaseSemaphore, GetQueuedCompletionStatus, WaitForSingleObjectEx, SetLastError, HeapAlloc, HeapFree, HeapCreate, HeapDestroy, InitializeCriticalSection, GetProcAddress, LoadLibraryA, ExpandEnvironmentStringsA, WideCharToMultiByte, LoadLibraryW, GetLastError, Process32Next, Process32First, CreateToolhelp32Snapshot, GetModuleFileNameW, DeleteCriticalSection, GetVersionExA, InterlockedDecrement, FreeLibrary, GetModuleHandleA, GetTempPathA, LocalFree, TlsFree, TlsAlloc, GetModuleFileNameA, TlsSetValue, TlsGetValue, FileTimeToSystemTime, GetProcessTimes, VirtualAlloc, PulseEvent, WaitForMultipleObjects, ResumeThread, TerminateThread, SetThreadAffinityMask, SetThreadPriority, GetThreadPriority, FormatMessageA, SetEndOfFile, GetOEMCP, GetACP, CreateFileA, CreateFileW, GetFileType, FlushFileBuffers, SetStdHandle, GetStringTypeW, GetStringTypeA, CloseHandle, GetStartupInfoA, SetFilePointer, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, VirtualFree, ExpandEnvironmentStringsW, GetCurrentProcess, GetCPInfo, GetStdHandle, SetHandleCount, ReadFile, IsBadCodePtr, IsBadReadPtr, IsBadWritePtr, InterlockedExchange, RaiseException, RtlUnwind, MultiByteToWideChar, GetCommandLineA, GetVersion, ExitProcess, TerminateProcess, HeapReAlloc, HeapSize, SetUnhandledExceptionFilter, LCMapStringA, LCMapStringW, WriteFile, VirtualProtect
CoCreateInstance, CoInitialize, CoInitializeEx, OleRun, CoUninitialize
DestroyWindow, PostMessageA, UnregisterClassA, DefWindowProcA, DispatchMessageA, TranslateMessage, GetMessageA, CreateWindowExA, RegisterClassA, PostQuitMessage, MsgWaitForMultipleObjectsEx, IsWindow, wvsprintfA
GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW
WPUCompleteOverlappedRequest, WSCGetProviderPath, WSCEnumProtocols
Sendori.dll by Sendori (Signed)

Remove sendori.dll
MD5:   0c741d387c51485c226d0966bb6c8ffc
SHA1:   468e6c5f34ae8842860b21f81d87d4d304d9c842
SHA256:   321637122c107d00bc3e97f23568ebc34d75bf51b7ed4537b897dfbc9e5d3e23

What is sendori.dll?

The Sendori.dll is a module that hooks itself into various processes. provides a in the domain space. Rather than parking domain names on a page with search listings the company’s service partners domains with advertisers in specific sectors. Sendori apparently has applied to patent their technology. Advertisers looking for traffic on a given topic can buy direct navigation traffic from Sendori’s domain name clients.

About sendori.dll (from Sendori)

Sendori is a cloud-based web service that helps users navigate faster to their favorite websites. It is also a web filtering service that protects users from accessing malicious and phishing sites as


File name:sendori.dll
Product name:Sendori.dll
Typical file path:C:\Windows\System32\sendori.dll
File version:
Size:313.85 KB (321,384 bytes)
Issued to:Sendori
Authority (CA):VeriSign
Expiration date:Thursday, April 4, 2013
PE subsystem:Windows GUI
File packed:No
The following program will install this file
Sendori, Inc.
  79% remove
Sendori is a web browser plugin and layered service provider filter that is typically installed through a bundled installation. The plugin is designed to intercept Internet web traffic and provided modified results to various requests. Such results include DNS error redirection to sponsored affiliate advertisers. Sendori provides DNS redirection where advertisers can purchase navigation traffic from Sendori's domain name clients. When a...

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate N 56.25%
Windows 7 Ultimate 18.75%
Microsoft Windows XP 6.25%
Windows 7 Professional 6.25%
Windows 8 Pro 6.25%
Windows 7 Home Premium 6.25%

Distribution by countryDistribution by country

United States installs about 100.00% of Sendori.dll.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 100.00%
