How to remove 81F5.tmp.exe
- File Details
- Overview
- Analysis
81F5.tmp.exe
The module 81F5.tmp.exe has been detected as Trojan.Kryptik
File Details
Product Name: |
|
MD5: |
d999c91a10106a0f17dc91c96b6102a2 |
Size: |
581 KB |
First Published: |
2020-06-09 10:50:54 (4 years ago) |
Latest Published: |
2021-01-12 03:21:53 (4 years ago) |
Status: |
Trojan.Kryptik (on last analysis) |
|
Analysis Date: |
2021-01-12 03:21:53 (4 years ago) |
%appdata% |
%appdata% |
%appdata% |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
Windows 7 |
75.0% |
|
Windows 10 |
25.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00039dfe |
MVID: |
18c0e6c9-31ab-4cd0-8e0f-9ca3d3f280d8 |
Typelib ID: |
7e11bf2c-4e1f-47cb-8326-6acb7ce446dc |
Name |
Size of data |
MD5 |
.text |
229376 |
08ac020a9d7e53b73df3b0ec99e12c1f |
.sdata |
512 |
ca4fb0f4802a070b2854def89739c4e8 |
.rsrc |
363520 |
95d0af1b2ae29efdf724c0643e35ce8b |
.reloc |
512 |
75ca1d6cb13e0a31ac7f5ee3c5fd166e |