How to remove File_sender.exe
- File Details
- Overview
- Analysis
File_sender.exe
The module File_sender.exe has been detected as Trojan.SharePal
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
28a5f072f5889940a762843cf1f65647 |
| Size: |
5 MB |
| First Published: |
2018-08-29 09:15:21 (7 years ago) |
| Latest Published: |
2021-01-10 23:01:55 (4 years ago) |
| Status: |
Trojan.SharePal (on last analysis) |
|
| Analysis Date: |
2021-01-10 23:01:55 (4 years ago) |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
| %commonappdata% |
|
31.1% |
|
|
8.9% |
|
|
8.9% |
|
|
6.7% |
|
|
6.7% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
| Windows 7 |
63.0% |
|
| Windows 10 |
32.6% |
|
| Windows 8.1 |
4.3% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0038c568 |
| Name |
Size of data |
MD5 |
| .text |
3686912 |
47bce496e340e2f18ef54af751890340 |
| .itext |
43520 |
0562a91816ffdc4fd3f5cfa39c60ce1a |
| .data |
61440 |
57941d06b1155a113d62908d303c7665 |
| .bss |
0 |
00000000000000000000000000000000 |
| .idata |
22016 |
6ea41e2b9f8c87b8d05ddadf6be072d4 |
| .didata |
3072 |
d24a6046b303c882adf1ba7458615de2 |
| .tls |
0 |
00000000000000000000000000000000 |
| .rdata |
512 |
2b35402b63709d0ad2333d5d63817e2f |
| .reloc |
0 |
00000000000000000000000000000000 |
| .rsrc |
1395200 |
729dd97a9e5089f64cd2427d52f99acd |