xtrapva.dll

Wiselogic Co., Ltd.

Publisher:
Wiselogic Co., Ltd.

Description:
Online Game Security Solution

Version:
1, 0, 0, 1

MD5:
f2e135069b968d5fa77ea49b1f95795e

SHA-1:
6fc30fe6949913a9ad79e6ced6d02a89c16afc6c

SHA-256:
dc8e2caa60bb33df1d8a1862bbc3c47a8c5e2fc83124c651e8d853b00567d90a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 8:27:08 PM UTC  (today)

File size:
3.3 MB (3,453,928 bytes)

Copyright:
Wiselogic Co., Ltd.

Trademarks:
X-TRAP

File type:
Dynamic link library (Win32 DLL)

Language:
Coreano

Common path:
C:\Documents and Settings\{user}\Local settings\temporary internet files\content.ie5\{random}\xtrapva.dll

File PE Metadata
Compilation timestamp:
3/24/2016 12:14:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:XYS+xo+yeBT4rSptuTg5OZzbSlwMOgManBB3Pq3kyYhQABZIjMlhePvB:5y/pBcGyzbSaXED/q3kRQuI4l4PvB

Entry address:
0xB88044

Entry point:
68, 00, 00, 00, 00, 68, 01, 00, 00, 00, 68, 00, 00, 40, 40, E8, 00, 00, 00, 00, 81, 2C, 24, 58, 80, F8, 40, 81, 04, 24, 00, 70, F8, 40, E9, 95, 1F, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Packer / compiler:
PKLITE32, 0x1.1

Code size:
5.7 MB (5,926,912 bytes)

The file xtrapva.dll has been seen being distributed by the following 5 URLs.

http://fhl-lcdn.pandonetworks.com/Xtrap-pb/.../XTrapVa.dll

Scan xtrapva.dll - Powered by Reason Core Security