How to remove 7798.exe
7798.exe
The module 7798.exe has been detected as Trojan.SmokeLoader
File Details
| Product Name: | sdofjgnsfdi |
| MD5: | b79c364cdfd38ab9601e3daea7b2b503 |
| Size: | 298 KB |
| First Published: | 2023-01-29 23:28:19 (3 years ago) |
| Latest Published: | 2023-02-01 23:58:28 (3 years ago) |
| Status: | Trojan.SmokeLoader (on last analysis) | |
| Analysis Date: | 2023-02-01 23:58:28 (3 years ago) |
Common Places:
| %temp% |
| %temp% |
| %sysdrive%\windows.old\users\danie\appdata\local |
Geography:
| 33.3% | ||
| 33.3% | ||
| 33.3% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000421b |
PE Sections:
| Name | Size of data | MD5 |
| .text | 39424 | 45b93625b1ba0cbddf1b91f7448639cc |
| .data | 92672 | 737ea35360155074cbd3e8d54057464a |
| .fegohu | 1024 | 0f343b0931126a20f133d67c2b018a3b |
| .cisiw | 6656 | 3c63825015aabd810674f44afac6d12b |
| .pujihol | 1024 | 0f343b0931126a20f133d67c2b018a3b |
| .wagovun | 1024 | 0f343b0931126a20f133d67c2b018a3b |
| .rsrc | 156160 | 9bd5b0f4de5693a722966737672d3609 |
| .reloc | 6144 | 8a5163154922327c3f5741decce91bd5 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 7798.exe