xtrapva.dll

Wiselogic Co., Ltd.

Publisher:
Wiselogic Co., Ltd.

Description:
Online Game Security Solution

Version:
1, 0, 0, 1

MD5:
12e05e8340cb40ec3583f0c20fe3044c

SHA-1:
9605c31eb2f3060748990c4513dc72f7c5fdaf32

SHA-256:
2685bdb969dbc8f455c7b97dd24c23f3404f9b70874809539045f0a2ee75331f

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/6/2024 11:33:27 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Bkav FE
HW32.CDB
1.3.0.4924

Dr.Web
Trojan.MulDrop5.8882
9.0.1.045

Trend Micro House Call
TROJ_GEN.F47V0204
7.2.45

File size:
2.3 MB (2,393,064 bytes)

Copyright:
Wiselogic Co., Ltd.

Trademarks:
X-TRAP

File type:
Dynamic link library (Win32 DLL)

Language:
Korean

File PE Metadata
Compilation timestamp:
2/4/2014 6:37:37 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:SSiij8JBhWh7zj1/GSTcKXppHOe8VSaDf7T44:Niij8tiZGSQy7HRqff

Entry address:
0x73B044

Entry point:
68, 00, 00, 00, 00, 68, 01, 00, 00, 00, 68, 00, 00, 40, 40, E8, 00, 00, 00, 00, 81, 2C, 24, 58, B0, B3, 40, 81, 04, 24, 00, A0, B3, 40, E9, 95, 1F, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
2.1 MB (2,211,840 bytes)

The file xtrapva.dll has been seen being distributed by the following 3 URLs.

http://cfsapatch.z8games.com/xtrap/.../XTrapVa.dll

Scan xtrapva.dll - Powered by Reason Core Security