How to remove 1520.tmp.exe
- File Details
- Overview
- Analysis
1520.tmp.exe
The module 1520.tmp.exe has been detected as Spy.Keylogger
File Details
| MD5: |
91423ee3404b9f24e0be32d5c937b5c6 |
| Size: |
170 KB |
| First Published: |
2021-01-09 14:03:56 (5 years ago) |
| Latest Published: |
2021-02-04 16:59:57 (4 years ago) |
| Status: |
Spy.Keylogger (on last analysis) |
|
| Analysis Date: |
2021-02-04 16:59:57 (4 years ago) |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
|
46.2% |
|
|
23.1% |
|
|
15.4% |
|
|
7.7% |
|
|
7.7% |
|
| Windows 10 |
61.5% |
|
| Windows 7 |
23.1% |
|
| Windows 8.1 |
15.4% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00007209 |
| Name |
Size of data |
MD5 |
| .text |
75776 |
69f6345a768d449e646af5e816a69db5 |
| .rdata |
26624 |
0b36d94147eb69a750c5220142600b2e |
| .data |
2560 |
768b213785856be99edec2d84d819544 |
| .rsrc |
64000 |
7a7df15fea189cc5d0a912aa812b6487 |
| .reloc |
4608 |
9aeecdf98d410404606ae7798758807f |