Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

7.0.302.0 8.93%
6.0.316.0 9.82%
6.0.314.0 0.89%
6.0.308.0 10.71%
6.0.306.0 7.14%
6.0.115.0 RC 2.68%
5.2.7.0 14.29%
5.2.15.0 3.57%
5.0.94.0 4.46%
5.0.93.7 1.79%
5.0.93.0 2.68%
4.2.71.2 4.46%
4.2.67.10 0.89%
4.2.64.12 4.46%
4.2.58.3 0.89%
4.2.42.7 0.89%
4.2.42.0 0.89%
4.0.474.10 0.89%
4.0.474.0 0.89%
4.0.468.0 0.89%
4.0.467.0 0.89%
4.0.437.0 0.89%
4.0.417 6.25%
4.0.314 1.79%
3.0.710 0.89%
View more

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken, RegEnumKeyExW, RegDeleteValueW, RevertToSelf, RegDeleteKeyW, SetThreadToken, DuplicateToken, OpenThreadToken, AllocateAndInitializeSid, RegSetValueExW, RegQueryValueExW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, FreeSid, EqualSid, GetTokenInformation, RegDeleteKeyA, DuplicateTokenEx, RegEnumValueW, RegQueryInfoKeyW
kernel32.dll
FindFirstFileW, FindNextFileW, FindClose, ReadFile, WriteFile, SetEndOfFile, SetFilePointer, DeleteFileW, FlushFileBuffers, GetFileTime, GetSystemTimeAsFileTime, QueryDosDeviceW, FindResourceW, GetVolumeInformationW, lstrcpynW, GetVersion, GetVersionExW, GetLogicalDriveStringsW, GetModuleFileNameW, LoadLibraryExW, LoadLibraryW, GetProcAddress, FreeLibrary, GetThreadLocale, GetLocaleInfoA, GetACP, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, GetVersionExA, RaiseException, GetCurrentProcessId, GetCurrentThreadId, QueryPerformanceCounter, lstrlenW, GetFullPathNameW, GetFileAttributesW, GetModuleHandleW, SetLastError, MultiByteToWideChar, WideCharToMultiByte, SuspendThread, TryEnterCriticalSection, SetThreadPriority, GetThreadPriority, TerminateThread, GetCurrentProcess, WaitForMultipleObjects, GetTickCount, Sleep, CreateDirectoryW, InterlockedDecrement, InterlockedIncrement, GetCurrentThread, GetDriveTypeW, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, GetLastError, SystemTimeToFileTime, EnterCriticalSection, GetSystemTime, SetEvent, ResetEvent, DisableThreadLibraryCalls, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, InterlockedCompareExchange, InterlockedExchange, CreateFileW, DeviceIoControl, lstrcpynA, lstrlenA, AreFileApisANSI, GetFullPathNameA, GetFileAttributesA, ResumeThread, CloseHandle, CreateThread, CreateEventW, GetOverlappedResult, GetSystemPowerStatus, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetStringTypeW, GetStringTypeA, GetConsoleMode, GetConsoleCP, LoadLibraryA, RtlUnwind, GetCommandLineA, HeapCreate, VirtualFree, VirtualAlloc, GetModuleHandleA, ExitProcess, GetStdHandle, GetModuleFileNameA, GetCPInfo, GetOEMCP, IsValidCodePage, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, LCMapStringA, LCMapStringW, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, LoadResource, LockResource, FindResourceExW, IsProcessorFeaturePresent, SizeofResource
msvcp110.dll
DllMain
msvcr110.dll
DllMain
msvcr80.dll
DllMain
setupapi.dll
SetupDiGetDeviceInstanceIdW
shell32.dll
SHGetDesktopFolder, SHGetMalloc, SHGetPathFromIDListW, SHGetPathFromIDListA
user32.dll
SetTimer, KillTimer, LoadStringW, UnregisterClassA

ekrnScan.dll

ESET Smart Security by ESET (Signed)

Remove ekrnScan.dll
Version:   6.0.115.0 RC
MD5:   9c196c6ec5cdd4b057fcfc4bcef9add9
SHA1:   f610dbdb22767b5e16357c2bdc59a29626554e66
SHA256:   fd7131327852318da405671cb1f5f984f98fadfd18d402197747b1ac1bc90e8d

What is ekrnScan.dll?

ESET On-demmand Scanner Kernel is part of ESET NOD32 Antivirus, commonly known as NOD32, an antivirus software program from ESET. ESET's use of assembly language in its products contributes to their low system requirements and disk space utilization. ESET calls its scanning engine ThreatSense, and makes extensive use of generic signatures and heuristics.

About ekrnScan.dll (from ESET)

Protect your family with ESET’s complete Internet security suite, built on the award-winning ThreatSense antivirus and antispyware engine. Our proactive heuristic technology intercepts and eliminates

DetailsDetails

File name:ekrnscan.dll
Publisher:ESET
Product name:ESET Smart Security
Description:ESET On-demmand Scanner Kernel
Typical file path:C:\Program Files\eset\eset nod32 antivirus\ekrnscan.dll
File version:6.0.115.0 RC
Size:308.38 KB (315,784 bytes)
Certificate
Issued to:ESET
Authority (CA):VeriSign
Expiration date:Wednesday, June 12, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 8.0
.NET CLR:No
More details

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 39.29%
Microsoft Windows XP 25.00%
Windows 7 Home Premium 10.71%
Windows 8 Pro 8.04%
Windows 7 Professional 4.46%
Windows 7 Ultimate N 2.68%
Windows 7 Home Basic 1.79%
Windows Vista Home Premium 1.79%
Windows 8.1 N 0.89%
Windows 8.1 Single Language 0.89%
Windows 8.1 0.89%
Windows 8 Enterprise 0.89%
Windows 8 0.89%
Windows 8 Consumer Preview 0.89%
Windows 8 Pro with Media Center 0.89%

Distribution by countryDistribution by country

United States installs about 12.50% of ESET Smart Security.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 18.87%
Hewlett-Packard 15.09%
Intel 11.32%
Acer 10.38%
Lenovo 9.43%
Dell 9.43%
Toshiba 7.55%
Sony 7.55%
GIGABYTE 7.55%
Sahara 0.94%
Samsung 0.94%
American Megatrends 0.94%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE