bglmanx.dll

bglmanx Dynamic Link Library

VIRTUALI Sagl

Publisher:
VIRTUALI Sagl  (signed and verified)

Product:
bglmanx Dynamic Link Library

Version:
3, 0, 0, 13

MD5:
47ae74f80259a4358970afd2c791d842

SHA-1:
064f0901c65cb86799ea7978ba008dad4ded88fe

SHA-256:
0b0bb20f86f69e9102dabe4307e92a4ce982f574828baff486a5786343703987

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 10:27:20 AM UTC  (today)

File size:
1.8 MB (1,856,272 bytes)

Product version:
3, 0, 0, 13

Copyright:
Copyright (C) 2006, 2015 VIRTUALI Sagl

Original file name:
bglmanx.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Italienisch (Italien)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\bglmanx.dll

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/20/2016 1:00:00 AM

Valid to:
11/16/2016 12:59:59 AM

Subject:
CN=VIRTUALI Sagl, OU=VIRTUALI Sagl, O=VIRTUALI Sagl, STREET=Via al Pero 28f, L=Genestrerio, S=Genestrerio, PostalCode=6852, C=CH

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BEAA606EEC2BB1EC3AF0033F4DF7C383

File PE Metadata
Compilation timestamp:
4/10/2016 11:03:30 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
49152:jMvlTLNoQrUY49/vY8kfO0g/U2vuKpXiNgp+fu3BxUi:oZCQrfOX/U1KpXhpvbUi

Entry address:
0x7E27B0

Entry point:
EB, 08, 00, D2, 01, 00, 00, 00, 00, 00, 60, E8, 00, 00, 00, 00, 5D, 81, ED, 10, 00, 00, 00, 81, ED, B0, 27, 7E, 00, 8A, 84, 24, 28, 00, 00, 00, 80, F8, 01, 0F, 84, 07, 00, 00, 00, 61, 33, C0, 40, C2, 0C, 00, E9, 04, 00, 00, 00, D9, E4, E6, 53, B8, B0, 27, 7E, 00, 03, C5, 81, C0, 63, 00, 00, 00, B9, 71, 05, 00, 00, BA, 4F, ED, 58, 1F, 30, 10, 40, 49, 0F, 85, F6, FF, FF, FF, E9, 04, 00, 00, 00, 0D, AF, 1D, E7, C4, 82, C4, C6, 73, 4F, 4F, 4F, CE, 8E, B7, 4F, 4F, 4F, 4C, 82, F7, 49, 4F, 4F, 4F, F5, 67, 4F, 4F...
 
[+]

Code size:
185 KB (189,440 bytes)

The file bglmanx.dll has been seen being distributed by the following URL.

Scan bglmanx.dll - Powered by Reason Core Security