MD5:
b24c5daadda88cf73bdab78b717d313c
SHA-1:
8f069c6edec0c4fdfff58be55e55b1dbb3047271
SHA-256:
cf3c5e9403410bd1d26d05e841cf798548a50fa5c1cc52e31303b3ffb3c03c54
Scanner detections:
1 / 68
Status:
Inconclusive (not enough data for an accurate detection)
Analysis date:
11/6/2024 2:05:59 AM UTC (today)
Scan engine
Detection
Engine version
Sophos
Virus 'Mal/EncPk-DW'
5.22
File size:
2.9 MB (3,003,368 bytes)
File type:
Dynamic link library (Win32 DLL)
Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\xtrapva.dll
Compilation timestamp:
10/7/2015 1:57:07 AM
CTPH (ssdeep):
49152:EFgQbAHSG/dU1mHXfYfiUMO4ICIO8FineH:EF05ymHXffIn
Code size:
3.8 MB (3,948,544 bytes)
The file xtrapva.dll has been seen being distributed by the following URL.