How to remove decacopy.exe
- File Details
- Overview
- Analysis
decacopy.exe
The module decacopy.exe has been detected as Possible Threat
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
435133121b94c55e888502bdc6ecb2c3 |
| Size: |
80 MB |
| First Published: |
2019-10-11 12:30:55 (6 years ago) |
| Latest Published: |
2024-11-30 23:01:05 (11 months ago) |
| Status: |
Possible Threat (on last analysis) |
|
| Analysis Date: |
2024-11-30 23:01:05 (11 months ago) |
Overview
| %appdata%\gomberto muraca |
| %appdata%\gomberto muraca |
| %appdata%\gomberto muraca |
| %appdata%\gomberto muraca |
| %appdata%\gomberto muraca |
| Windows 8.1 |
60.0% |
|
| Windows 10 |
40.0% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0405cfc0 |
| Name |
Size of data |
MD5 |
| .text |
67739136 |
bcffcd5321551e32ff21677f4d8444f3 |
| .rdata |
14420480 |
7fccdb1c1ebc374873f07b3c5f8149a0 |
| .data |
188928 |
9773f5f5612f5aba4127a6044607fb81 |
| .00cfg |
512 |
296260d4860dab70470b7f331584668f |
| .rodata |
8192 |
9be27ba4c2b3267607e6e966a0c03335 |
| .tls |
512 |
9efa43af7b1faae15ffbd428d0485819 |
| CPADinfo |
512 |
842689af09e7bf563672a4b43f1a2286 |
| prot |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
82432 |
32cf9e2f77555f5c9aa7b5bda3453a7e |
| .reloc |
2378752 |
19ad75a8c9b964c9aab7229ed83e6fe9 |