By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

Summary

Analyse score

0/ 14

No antivirus venders flagged
this file as malicious

Signature

File is not signed

Last scanned

First submission

File type

sys

sys

Basic properties

CRC32

0xf7e6e29f

MD5

249400fbedce468f5fd53a5a693c4206

Magic

PE32+ executable (DLL) (GUI) x86-64, for MS Windows

SHA1

c9fcb4c335226df2a0d0654be36aa4d5e08a120a

SHA256

11aff82043f16c06652fbf87f5be92ef275d8b4774cb31b0eeec6008249d7adb

SHA512

f2c16d7655f4453c2db3c4337ed9f3fbdcfb473a6215ff0bf0b2d6c43fddac3943ccf85d404d42e422eceb28ad454d0428a0a47e2c8144877b2d1c9a997ee890

SSDeep

384:s1XejJvuv8R7WXLEA1ZuCp2xLd0ocrX2SF:a8YdoCUxLdQKS

Size

19.00KB

Packer
  • PE+(64): compiler: Microsoft Visual C++(-)[-]
  • PE+(64): linker: Microsoft Linker(14.39**)[DLL64]
TrID
  • 44.4% (.EXE) Win64 Executable (generic) (10523/12/4)
  • 21.3% (.EXE) Win16 NE executable (generic) (5038/12/1)
  • 8.7% (.ICL) Windows Icons Library (generic) (2059/9)
  • 8.5% (.EXE) OS/2 Executable (generic) (2029/13)
  • 8.4% (.EXE) Generic Win/DOS Executable (2002/3)
Tags

ExifTool File Metadata

CodeSize

9.00KB

EntryPoint

0x28b4

ExifToolVersionNumber

12.76

FileSize

19 kB

FileType

Win64 DLL

FileTypeExtension

dll

ImageFileCharacteristics

Executable, Large address aware, DLL

ImageVersion

0.0

InitializedDataSize

10.50KB

LinkerVersion

14.39

MachineType

AMD AMD64

MimeType

application/octet-stream

OsVersion

6.0

PeType

PE32+

Subsystem

Windows GUI

SubsystemVersion

6.0

UninitializedDataSize

0

Submissions

Published Name Source Country
Selim_Er_Mar_Boda_ (1).dll web
N/A