Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

fa8de 50.00%
d8b7b 16.67%
69ba0 16.67%
9ea6c 16.67%
(Note, Garena Online Pte Ltd publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
kernel32.dll
DisableThreadLibraryCalls, SetErrorMode, GetModuleFileNameW, GetCurrentProcessId, CreateMutexW, GetLastError, IsBadReadPtr, CreateEventW, CloseHandle, ResetEvent, IsBadWritePtr, WaitForSingleObject, SetEvent, WaitForMultipleObjects, IsBadCodePtr, CreateThread, ResumeThread, SetEndOfFile, UnlockFile, LockFile, ReadFile, DuplicateHandle, FlushFileBuffers, CreateFileA, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, WriteConsoleW, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, InitializeCriticalSection, DeleteCriticalSection, GetVersion, SetLastError, VirtualQuery, EnterCriticalSection, LeaveCriticalSection, InterlockedDecrement, VirtualAlloc, VirtualFree, GetModuleHandleW, GetProcAddress, FreeLibrary, LoadLibraryW, VirtualProtect, MultiByteToWideChar, SizeofResource, LockResource, LoadResource, FindResourceW, FindResourceExW, WideCharToMultiByte, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCurrentThreadId, GetCommandLineA, RaiseException, RtlUnwind, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, WriteFile, GetStdHandle, GetModuleFileNameA, Sleep, ExitProcess, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapCreate, QueryPerformanceCounter, GetTickCount, GetSystemTimeAsFileTime, SetFilePointer, GetConsoleCP, GetConsoleMode, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, LoadLibraryA, GetLocaleInfoA, InitializeCriticalSectionAndSpinCount, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, GetFileSize
shell32.dll
ShellExecuteExW
user32.dll
DispatchMessageW, TranslateMessage, GetMessageW, PeekMessageW
wininet.dll
HttpSendRequestW, InternetCloseHandle, InternetSetStatusCallbackW, InternetSetOptionW, HttpQueryInfoW, InternetReadFileExA, InternetCrackUrlW, InternetOpenW, InternetConnectW, HttpOpenRequestW, HttpAddRequestHeadersW

ggcode.dll

By Garena Online Pte Ltd (Signed)

Remove ggcode.dll
MD5:   69ba061d5d628b817df5a73b8b60496d
SHA1:   7555ae7682f7bed51b283bdd93045aca880c2f3d
SHA256:   3526de649848a9a2aeb2445f8f6e84e71c38542befd828344d8547c65505b794

Overview

ggcode.dll executes as a process with the local user's privileges typically within the context of its parent ggspawn.dll (by Garena Online Pte Ltd). This is typically installed with the program Garena Plus published by Garena Online Pte Ltd.. The file is digitally signed by Garena Online Pte Ltd which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:ggcode.dll
Typical file path:C:\game\garena plus\ggcode.dll
Size:118.8 KB (121,648 bytes)
Certificate
Issued to:Garena Online Pte Ltd
Authority (CA):VeriSign
Effective date:Wednesday, November 3, 2010
Expiration date:Friday, November 4, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Garena Online Pte Ltd.
2% remove
The Garena Plus application developed for various games distributed by the comapny allows gamers to develop buddy lists, chat with friends online and check on game progress and achievements. The Garena Plus game platform can be downloaded for free and it has an interface similar to instant messaging platforms. Gamers are also able to form groups or clans, and chat with multiple gamers simultaneously through public or private channels t...
Network connections
  • [UDP] listens on port 60791

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00010918%
    0.028634%
    Kernel CPU:0.00008748%
    0.013761%
    User CPU:0.00002170%
    0.014873%
    Kernel CPU time:125 ms/min
    100,923,805ms/min
    Memory
    Private memory:4.55 MB
    21.59 MB
    Private (maximum):8.29 MB
    Private (minimum):6.77 MB
    Non-paged memory:4.55 MB
    21.59 MB
    Virtual memory:83.04 MB
    140.96 MB
    Virtual memory (peak):86.6 MB
    169.69 MB
    Working set:7.13 MB
    18.61 MB
    Working set (peak):8.6 MB
    37.95 MB
    Resource allocations
    Threads:4
    12
    Handles:174
    600
    GUI GDI count:15
    103
    GUI GDI peak:16
    142
    GUI USER count:6
    49
    GUI USER peak:7
    71

    BehaviorsProcess properties

    Integrety level:High
    Platform:64-bit
    Command line:"C:\windows\syswow64\rundll32.exe" "C:\Program Files\garena plus\ggcode.dll",rundll_entry
    Owner:User
    Parent process:ggspawn.dll (by Garena Online Pte Ltd)

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Microsoft Windows XP 50.00%
    Windows 8 Single Language 16.67%
    Windows 8 16.67%
    Windows 7 Ultimate 16.67%

    Distribution by countryDistribution by country

    Thailand installs about 50.00% of ggcode.dll.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    ASUS 40.00%
    GIGABYTE 40.00%
    Hewlett-Packard 20.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE