File Name | OxyClient.dll |
File Type |
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
Scanner Version | 1.0.216.174 |
Database Version | 2025-05-18 04:00:44 UTC |
No threats detected by our scanner
Hash Type | Value | Action |
---|---|---|
MD5 |
4677fbec09f9710e7458313aea1fb558
|
|
SHA1 |
f29e04dcc9e147361541f855d87cde5eaffe5554
|
|
SHA256 |
def81335d9b4f59dd7e7436af3b46fb2f436f54a9b53db785aa3956f197a229a
|
|
SHA512 |
0df914f392aa3fbf8ae43bf32b6453b828be8559818c81864446f4c986a658fc7f15ef9ea8b49666080543d6dac204e6a45e5d1369aa4e9ae605c7dfeac0a005
|
|
ImpHash |
26faa38dcfd754544e0f36d27b5c683f
|
Image Base | 0x180000000 |
Entry Point | 0x1800bf740 |
Compilation Time | 2025-04-08 00:10:15 |
Checksum | 0x00000000 (Actual: 0x00154bc3) |
OS Version | 6.0 |
PEiD Signatures |
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
Digital Signature | No valid SignedData structure was found. |
Imports | 17 libraries |
Exports | 0 functions |
Resources | 1 Resources |
Sections | 6 Sections |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
803,983 bytes | 804,352 bytes | 6.53 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
0F90BA0439AE3E2E2CBD628CF93AAE93 |
.rdata |
0x000c6000 |
132,306 bytes | 132,608 bytes | 6.15 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
5E5D147884E76043E3603F2E68131CC3 |
.data |
0x000e7000 |
446,136 bytes | 429,056 bytes | 6.29 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
29583CF9136BE2076E5D25D59B726BAB |
.pdata |
0x00154000 |
24,636 bytes | 25,088 bytes | 5.89 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
EC004DBA7A3222F05601D2D68C67B5D8 |
.rsrc |
0x0015b000 |
480 bytes | 512 bytes | 4.72 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
73A795673CA8112D987C6AEF24BC6CE0 |
.reloc |
0x0015c000 |
1,700 bytes | 2,048 bytes | 4.92 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
6F052AE140E374ABF07BBB7781B1EEFF |
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_MANIFEST | 1 | 381 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important