How to remove 5623be1a-6f13-11e8-9c33-b8975aaf0894
- File Details
- Overview
- Analysis
5623be1a-6f13-11e8-9c33-b8975aaf0894
The module 5623be1a-6f13-11e8-9c33-b8975aaf0894 has been detected as Trojan.Kryptik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
cbe13d9d2893bc1b0fd044875d63466c |
| Size: |
6 KB |
| First Published: |
2017-08-18 09:10:57 (8 years ago) |
| Latest Published: |
2024-11-07 23:01:00 (a year ago) |
| Status: |
Trojan.Kryptik (on last analysis) |
|
| Analysis Date: |
2024-11-07 23:01:00 (a year ago) |
| %sysdrive%\masm32\examples\unicode_extended\uwin2 |
| %sysdrive%\masm32\examples\unicode_extended |
| %sysdrive%\$recycle.bin\s-1-5-21-3312319042-3293142723-2506880042-1001\$r8carpp\examples\unicode_extended |
| %sysdrive%\examples\unicode_extended |
| %commonappdata%\malwarebytes |
| %sysdrive%\masm32\examples\unicode_extended |
| %sysdrive%\masm32\examples\unicode_extended |
| %sysdrive%\masm32\examples\unicode_extended |
| %sysdrive%\masm32\examples\unicode_extended |
| %sysdrive%\masm32\examples\unicode_extended |
| uwin2.exe |
| 5623be1a-6f13-11e8-9c33-b8975aaf0894 |
| 565ab604-6f13-11e8-b6f9-b8975aaf0894 |
|
10.5% |
|
|
10.5% |
|
|
10.5% |
|
|
10.5% |
|
|
10.5% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
|
5.3% |
|
| Windows 10 |
73.7% |
|
| Windows 7 |
21.1% |
|
| Windows 8.1 |
5.3% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00001000 |
| Name |
Size of data |
MD5 |
| .text |
1024 |
5f3e448a5febe3b31b7a5c725e18903a |
| .rdata |
1024 |
c7ec51d6b39d8a357116e0639d511ff8 |
| .data |
512 |
484068d8f093b36560bfe364b7e462dc |
| .rsrc |
2560 |
adc8f385c243758f56c2adbff5d13b6e |