hyaca.dll

MD5:
f49409e68120fa105734fa46b98106bd

SHA-1:
4efdfe8b6bd04941f511caabdc481e484b83ce82

SHA-256:
26733679f59c30ece134cfab971d85280a49c678de1eed6f3695276ef74eee3c

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/5/2024 4:49:47 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Win32/Blacked
2015.0.4604

Emsisoft Anti-Malware
Gen:Trojan.Heur.GM.0400460010
11.5.0.6191

ESET NOD32
Win32/Packed.VMProtect.ABO trojan
8.0.319.0

File size:
180 KB (184,320 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\hyaca.dll

File PE Metadata
Compilation timestamp:
6/28/2016 10:46:22 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
3072:15oRtn5BSdpfH3jzWbIumheO72GEfNPspcTQHMKbSU8GD/6ybXewL9RSz+nM:1+RAfXvRw1ffNPIcMfSOvDFnM

Entry address:
0x4DD2D

Entry point:
E8, 23, 0C, 00, 00, E8, 14, D0, FD, FF, 8D, 64, 24, 04, 0F, 85, 98, 88, FE, FF, 0F, 86, 92, 1D, FE, FF, E8, F2, 14, FE, FF, 68, 24, EB, 86, 78, 68, F1, 9D, E4, B8, 60, 8D, 64, 24, 28, E9, F2, EF, FD, FF, EF, 98, EF, F5, 1D, D7, EA, 54, 75, 02, 7C, 1F, 81, B5, E7, 80, 22, 17, AC, 5D, 02, 41, 9E, D2, 25, 5E, DB, FA, 99, 75, F3, 20, C0, 49, 0C, 27, DB, FA, 79, 69, 48, E7, 81, B2, 26, 45, 4C, 07, 61, 06, 13, 30, 4A, D9, 43, D8, E1, 8E, 02, 49, 50, D3, 7D, E6, 80, A3, 69, 26, 77, 08, 55, E2, F0, 97, E6, 9D, AF...
 
[+]

Code size:
45 KB (46,080 bytes)

The file hyaca.dll has been seen being distributed by the following URL.

Scan hyaca.dll - Powered by Reason Core Security