How to remove ~se2293.tmp
- File Details
- Overview
- Analysis
~se2293.tmp
The module ~se2293.tmp has been detected as Trojan.Presenoker
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2ceaf014ffa42dcabcdfc765f4b56370 |
Size: |
807 KB |
First Published: |
2017-05-21 04:03:40 (7 years ago) |
Latest Published: |
2020-08-02 18:18:04 (4 years ago) |
Status: |
Trojan.Presenoker (on last analysis) |
|
Analysis Date: |
2020-08-02 18:18:04 (4 years ago) |
%localappdata%\snare |
%localappdata%\temp |
%sysdrive%\adwcleaner\quarantine\files\roxhjkczvfhgzygyrduzfyqxzblhfrwr |
%sysdrive%\adwcleaner\quarantine\files\rulqvtfxlgksbssbrzujdjnysnyjbfni |
%sysdrive%\adwcleaner\quarantine\files\vtttxguaotqvfpbomekunshghzelhvzf |
%sysdrive%\quarantine_mzk\folders\2017052617182136\snare.17.25.32.79 |
%sysdrive%\adwcleaner\quarantine\files\lcdkxikrsrjyhyoxvvovxknizlvpysyy |
%sysdrive%\adwcleaner\quarantine\files\ycanzpmwgeegkyoyuufxhoosxktdktve |
%sysdrive%\windows.old\users\hp\appdata\local\snare |
%sysdrive%\adwcleaner\quarantine\files\lgkglsvhyzjmkhvwdazbzwibdoapodmw |
Snare.dll |
~se2293.tmp |
~seC90E.tmp |
~se7E53.tmp |
Snare.dll.mal |
|
18.5% |
|
|
13.6% |
|
|
11.1% |
|
|
9.9% |
|
|
9.9% |
|
|
8.6% |
|
|
7.4% |
|
|
4.9% |
|
|
3.7% |
|
|
2.5% |
|
|
2.5% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
Windows 10 |
53.1% |
|
Windows 7 |
29.6% |
|
Windows 8.1 |
14.8% |
|
Windows 8 |
2.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x00009938 |
Name |
Size of data |
MD5 |
.text |
371712 |
88d5e4ae6337e85dda59c8e3b2e10ccf |
.rdata |
179712 |
43c7b486dc1eb5ceec9cdf2f82cc555b |
.data |
13824 |
c8ac658dfd09e586080da156a1c13f6f |
.pdata |
19456 |
35ab5fc51aa1d20a95e5114daa1cc0a3 |
.rsrc |
2048 |
298e0e894e8b93cd51f34618208176db |
.reloc |
4096 |
537ffb469aafc6eb0a3293d70d2dc75d |