nile_voice.exe

Java1

Product:
Java1

Version:
1.0.0.0

MD5:
32298eb19d1f31798aca1f8e904bc6c8

SHA-1:
53cbaa9228fc5f14dc884cf2139a62281fdc8fa3

SHA-256:
0e4b2441b63b1702faf6b6a0e13b3e8ec5aaf765a21f07d47fa19ffc9e3bc99d

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/18/2025 11:33:05 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
MSIL/Kryptik.EYL trojan
7.0.302.0

File size:
297.5 KB (304,640 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
Java1.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
2/12/2016 8:42:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:nqKBdZ5+DhSQcocEohe+HAoptTRVNZmfopuEBlCqq5hVF31MzrHcD8asohaiyDVs:QcPhp0fopuE/q5hVF3if8gaiiaV

Entry address:
0x1B32E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.4477

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
101 KB (103,424 bytes)

The file nile_voice.exe has been seen being distributed by the following URL.

Scan nile_voice.exe - Powered by Reason Core Security