Hibiki.dll

UACMe

UG North

The library Hibiki.dll has been detected as malware by 1 anti-virus scanner.
Publisher:
UG North

Product:
UACMe

Description:
UACMe AVrf DLL

Version:
1.5.0.0

MD5:
0064fade2b64a738f08cc292b575087d

SHA-1:
fd5da0b42752f13c753b32319863bd161e4d6731

SHA-256:
fe4a446cfa0c3ab16a4f6f418bdb95844f912f17fe99bd140449c13f6576051b

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
4/20/2024 1:09:56 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Trojan.UGElevate.UGNorth.Meta (M)
15.10.6.14

File size:
6.5 KB (6,656 bytes)

Product version:
1.5.0.0

Copyright:
Copyright (C) 2015 UG North

Original file name:
Hibiki.dll

File type:
Dynamic link library (Win64 DLL)

Language:
English (United States)

Common path:
C:\Windows\System32\hibiki.dll

File PE Metadata
Compilation timestamp:
6/15/2015 7:15:48 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
48:qz3QHF1kzYSfItalmW2lPJDl1IyK1Iy59R5J/UoBCiyvFAcjvcvhS71WljhwLaR0:lAzYSfIwlmFRD3IPI29RnM+yWSsX5x

Entry address:
0x14E0

Entry point:
40, 53, 48, 83, EC, 20, 49, 8B, D8, 83, FA, 04, 0F, 85, 89, 00, 00, 00, 48, 8D, 0D, 3F, 0C, 00, 00, 48, 89, 7C, 24, 30, FF, 15, 24, 0B, 00, 00, 33, C0, 48, 8D, 15, 23, 1D, 00, 00, 0F, 57, C0, 48, 89, 05, 11, 1D, 00, 00, 48, 89, 05, 62, 1D, 00, 00, 89, 05, 64, 1D, 00, 00, F3, 0F, 7F, 05, EC, 1C, 00, 00, 48, 89, 05, 5D, 1D, 00, 00, 48, 8D, 05, DE, 1C, 00, 00, 48, 8B, FA, 48, 89, 05, 54, 1D, 00, 00, 33, C0, B9, 50, 00, 00, 00, F3, AA, 48, 8B, 7C, 24, 30, 48, 8D, 05, 27, 1D, 00, 00, 48, 89, 05, D8, 1C, 00, 00...
 
[+]

Entropy:
3.7330

Code size:
1.5 KB (1,536 bytes)

Remove Hibiki.dll - Powered by Reason Core Security