nxxke.dll

The library nxxke.dll has been detected as malware by 5 anti-virus scanners. According to AVG, this software downloads additional adware offers during setup.
MD5:
cc753d8835389b4a43663d7aced76d46

SHA-1:
a693be2f423a16096ec6a68b87d92350504daf8a

SHA-256:
c1ebd22a5b205df6d38bc5b582494627145f4fa482430fad740c7dda36e4f4c0

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
4/25/2024 4:42:12 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/ATRAPS.Gen2
7.11.30.172

avast!
Win64:Trojan-gen
141025-0

AVG
Downloader.Generic14
2015.0.3305

ESET NOD32
Win32/TrojanDownloader.Cerabit
8.10646

IKARUS anti.virus
Trojan.MSIL.Inject
t3scan.1.8.3.0

File size:
68.5 KB (70,144 bytes)

File type:
Dynamic link library (Win64 DLL)

Common path:
C:\users\{user}\appdata\roaming\nxxke.dll

File PE Metadata
Compilation timestamp:
10/28/2014 6:30:48 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
10.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:WeL/RHE3o889j/XQwh/JP1ZgUWT99Ccy7ousxxPE:WeL/RHE341gk/xXgFG5ai

Entry address:
0x232E

Entry point:
FF, 25, CC, 1C, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.4604

Code size:
5.5 KB (5,632 bytes)

Remove nxxke.dll - Powered by Reason Core Security