Suspicious
Suspect

NVML.DLL

PE Executable
MD5: 3270606f7138f08b0c4e051d0a9ebc2b
Size: 242.94 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3270606f7138f08b0c4e051d0a9ebc2b
Sha1 da7422fee4ab158c1ffb61b901e854fa375d57c0
Sha256 d5e71f60f77f8f7853d80ff308d7b0420e20600fe03af2529a2c8e740ed52943
Sha384 f513cbf87215128bf725a978c9e15eaffc13dbac6cc427270f173cee8ff99bc3bd10baa18ddea3ed43c4136d9dc4b606
Sha512 0a36861209990a80c633e4e7d4bb413f3e5dd16b655a9008cf5f8c8fb9b2d8bf18433187b890fe84a062f190703aac545d2a1205236f7ba3fe38a8580973193c
SSDeep 3072:sz7FXq1GEfQw1ZWafRk0r+Ki/qs/ZFVIK5DUdp5nAzC6KTgtuRghqStz:LfQw1ZWaJkp5i0nTUCogqSh
TLSH 8A348D15B7A50CBAED778539C9530906EA737C4247A0EADF03904AA6CF2F7E0963E711
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
[Authenticode]_d37edadf.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0002
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

2 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x39000 size 9472 bytes
Info
PDB Path: t$di
[Authenticode]_d37edadf.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0002
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙