How to remove RefundGuide_889054.exe
- File Details
- Overview
- Analysis
RefundGuide_889054.exe
The module RefundGuide_889054.exe has been detected as Trojan.Gen
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
25bf828eb7f8e63e0af77f391a34bec5 |
| Size: |
3 MB |
| First Published: |
2023-09-02 23:46:08 (2 years ago) |
| Latest Published: |
2024-06-27 23:05:49 (2 years ago) |
| Status: |
Trojan.Gen (on last analysis) |
|
| Analysis Date: |
2024-06-27 23:05:49 (2 years ago) |
Overview
| %profile%\downloads |
| %profile% |
| %sysdrive%\kullanıcılar\yahya |
| %sysdrive%\kullanıcılar\yahya |
| %sysdrive% |
| %profile% |
|
33.3% |
|
|
16.7% |
|
|
16.7% |
|
|
16.7% |
|
|
16.7% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x002a35b4 |
| Name |
Size of data |
MD5 |
| .text |
2751488 |
5885bbab229dda05842bfc1c4c58d8f5 |
| .itext |
10240 |
4d3cf847ba7eb273adcb8a2a317bdaad |
| .data |
136704 |
16bfed0a3673d46a45830e5f43c40483 |
| .bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
12800 |
68c1344e74efd1e8edd26c99082798db |
| .didata |
3584 |
c67931be7975db16c28f03c5aeba3c98 |
| .edata |
512 |
efa13dd0f62486f24cb2258414e9595b |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
512 |
e409a8fcd0019bc2a7d5abf3c66525be |
| .reloc |
278016 |
bf22c777a63288851ba4b0754de678f4 |
| .rsrc |
135680 |
cf2ea8d3306865ee37cffd1fdbf031d8 |