moistv2.2.vmp.dll

MD5:
a13449964a8ec01a761953599567d70d

SHA-1:
d0fe9271f4516a5d7b07394c1e06d720d8bfa24a

SHA-256:
61c6f93684fc111cb2b7684002e683a8d6cf9b0f4a537bffb6bc930f9719d518

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/27/2024 1:44:25 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Malware-gen
151226-0

AVG
Win32/Blacked
2015.0.4489

ESET NOD32
Win32/Packed.VMProtect.ABO trojan
7.0.302.0

Sophos
Virus 'Mal/VMProtBad-A'
5.22

File size:
1.5 MB (1,531,117 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\downloads\moistv2.2.vmp.dll

File PE Metadata
Compilation timestamp:
12/23/2015 3:36:25 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
24576:Zff1odlq/GGOCOnGPXjFISfd6B9FIk4d1P50+8vfAsQEfo39YM2XdZD8AiAmIauD:11d/GGOCffWC4lI1v5gfAsJfC9YMGRJ/

Entry address:
0x169845

Entry point:
60, 68, 2B, 69, B2, 53, C7, 44, 24, 20, 29, F3, 41, 58, E9, 81, 2F, 0F, 00, 89, F4, 60, 9C, 9C, 8D, 64, 24, 28, E9, 49, 01, FF, FF, 69, E6, 54, 4C, A2, 9A, 00, 4B, 05, C4, 8F, 5F, 81, F0, 9F, 67, CD, C5, 3F, 47, 12, DF, B2, 8F, C1, C9, 27, 1F, F6, C3, 8A, 57, 9D, A5, E3, DB, 31, 39, 97, 7F, 15, EA, 20, 9A, 6F, F9, 75, 70, E9, 14, BD, 26, 7C, 54, 9E, 9C, AC, 8B, 16, 4C, B4, 16, CB, 86, E5, A0, 7D, F7, CC, 31, D0, EA, 0C, E2, AA, 48, B2, 94, 91, 1B, 59, 61, 8F, CF, E3, BE, C9, 04, 34, 32, AA, 2C, D4, 0A, F2...
 
[+]

Entropy:
7.8220  (probably packed)

Code size:
196.5 KB (201,216 bytes)

The file moistv2.2.vmp.dll has been seen being distributed by the following URL.

Scan moistv2.2.vmp.dll - Powered by Reason Core Security