0000000000104730 threat report

MD5 7a62da0de5889ebea9b5c123bff6cc10
Latest seen 2024-09-16 23:02:00 (2 years ago)
First seen 2024-09-16 23:02:00 (2 years ago)
Size 5 MB
Publisher Intel Corporation

GridinSoft Anti-Malware detection

Detected by GridinSoft before you download

The current ThreatInfo record shows this exact file hash detected as Trojan.Generic. Download GridinSoft Anti-Malware to scan the device, confirm whether this file is present, and remove the detected object if it is found.

Detection name
Trojan.Generic
Recommended action
Scan and remove
Last analysis
2024-09-16 23:02:00 (2 years ago)
File hash
7a62da0de5889ebea9b5c123bff6cc10
Download Anti-Malware

Why it matters

Why GridinSoft flags this file

Detection

GridinSoft identifies the sample as Trojan.Generic.

Timeline

First seen 2024-09-16 23:02:00 (2 years ago); latest analysis 2024-09-16 23:02:00 (2 years ago).

Publisher context

Company metadata: Intel Corporation. Product metadata: Intel® Wireless WiFi Link Adapter.

Observed locations

ThreatInfo has seen this file in user or system paths listed below. Unexpected locations increase the need for local verification.

Recommended action

What to do next

  1. Compare the MD5 above with the file found on the device.
  2. Check whether the file appears in the observed locations or under one of the alternate names.
  3. Run GridinSoft Anti-Malware to confirm the detection and remove the file if it is present.

0000000000104730 is a Windows file recorded in the ThreatInfo database. It is associated with Intel® Wireless WiFi Link Adapter. The reported company name is Intel Corporation. The current detection status is Trojan.Generic, based on the latest analysis from 2024-09-16 23:02:00 (2 years ago).

If 0000000000104730 appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Trojan.Generic.

Product Name: Intel® Wireless WiFi Link Adapter
Company Name: Intel Corporation
MD5: 7a62da0de5889ebea9b5c123bff6cc10
Size: 5 MB
First Published: 2024-09-16 23:02:00 (2 years ago)
Latest Published: 2024-09-16 23:02:00 (2 years ago)
Status: Trojan.Generic (on last analysis)
Analysis Date: 2024-09-16 23:02:00 (2 years ago)
0000000000104730 detection screenshot

The screenshot is a visual record of a GridinSoft Anti-Malware detection for this sample. Use the hash and metadata above as the primary identifiers when comparing the file on your system.

%sysdrive%\111\d\1\$extend\$rmmetadata

ThreatInfo has observed 0000000000104730 in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is Israel with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for 0000000000104730 is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

0000000000104730 is identified as pe for 64 systems. The subsystem is Native. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Native
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x00043a50

PE Sections:

Name Size of data MD5
.text 3960832 744890359c4341c83684b44bb9daff9a
.rdata 647168 c6fed23de302002b8fef599e393ec61d
.data 316928 564c84581804b8e0b8b61f8a22dd30ff
.pdata 186368 33b2417e97a56200a4d6803d3df479cd
PAGEcsrv 43008 c24e8663d2a2b91199ee05a438991185
PAGE 9216 d92190a316e8f8265459752e6284f22c
PAGEcsec 512 b65a254def6156234dd8aadd51356af4
PAGEcjaw 3584 75179daa7523640c0d201030089eaa4f
PAGEcwfd 74240 275718671f186cde0758282ef79c177a
PAGEcimg 10240 5759eb94475fea7297d6c87e2d69ea6a
PAGEccln 60928 619966626681f67418b81fb730f6ea0b
PAGEcsv_ 18944 3d62d9085ff69f52727d848acda5740f
PAGEcctw 512 81873f986bd2a7915e25704a0a6650e8
PAGEdoid 12288 16fb8d8eabc98260dc43f6ce03d1ba6e
PAGEdcln 4096 06d0be95abd22ce6a936d244c2d80119
PAGEdSlr 5120 838d5c61959a0af494e7417a99959617
PAGEdMag 5120 c129bed5d696334eb9b2646099e18af0
PAGEdBla 5120 db59838a5bc4026904bfc3414b3d5d58
PAGEdHrp 512 9e94897269860507b17c17ae6c84f0a0
PAGEdGfp 1024 670868ea337725dce090a3f5406043a7
PAGEdMrp 512 0eaa7cdf19508c946c0911525a3de308
PAGEdFmp 1024 8d821f814593d0827480dfed1edd57b5
PAGEdWhp 1024 3a4b1ee39f80a87b81f6e4c85ac14af4
PAGEdSim 512 40107b4c8ba49a9e0c50167d71f2eccb
PAGEdFpg 512 d9df33c7348a3aefd9098ab8ce28ceaa
PAGEdSle 512 7262433ee8e4c92bce86ceecd1d1e23e
PAGEdreg 62464 3c15b4d7ad7d0ca5737c340e97aae40b
PAGEdimg 1536 1c202aa114d5f6998187c3e7db84935a
PAGEdsv_ 512 f880be3d7a297133ad6af22165318ab8
PAGEdjaw 512 bf619eac0cdf3f68d496ea9344137e8b
INIT 6144 01032e7b09b9cb0ce39acc748992d03f
.rsrc 47616 a6580e1848c83508b71198755e4877f1
.reloc 34816 fde6b9cabd9c20751a719cbd321f40b5

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information: