xtrapva.dll

MD5:
b24c5daadda88cf73bdab78b717d313c

SHA-1:
8f069c6edec0c4fdfff58be55e55b1dbb3047271

SHA-256:
cf3c5e9403410bd1d26d05e841cf798548a50fa5c1cc52e31303b3ffb3c03c54

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/6/2024 2:05:59 AM UTC  (today)

Scan engine
Detection
Engine version

Sophos
Virus 'Mal/EncPk-DW'
5.22

File size:
2.9 MB (3,003,368 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\xtrapva.dll

File PE Metadata
Compilation timestamp:
10/7/2015 1:57:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:EFgQbAHSG/dU1mHXfYfiUMO4ICIO8FineH:EF05ymHXffIn

Entry address:
0x98A044

Entropy:
6.4006

Code size:
3.8 MB (3,948,544 bytes)

The file xtrapva.dll has been seen being distributed by the following URL.

Scan xtrapva.dll - Powered by Reason Core Security