How to remove 96305376118.exe
- File Details
- Overview
- Analysis
96305376118.exe
The module 96305376118.exe has been detected as Spy.Keylogger
File Details
MD5: |
5f8f0612532cd8642673476ac43b4ff4 |
Size: |
573 KB |
First Published: |
2020-12-23 20:58:53 (4 years ago) |
Latest Published: |
2021-01-14 19:51:21 (4 years ago) |
Status: |
Spy.Keylogger (on last analysis) |
|
Analysis Date: |
2021-01-14 19:51:21 (4 years ago) |
%temp% |
%temp% |
%sysdrive%\system volume information\systemrestore\frstaging\users\ritch ross\appdata\local\microsoft\windows\inetcache\ie |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
%temp% |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
%localappdata%\microsoft\windows\inetcache\ie |
%temp% |
%temp% |
%temp% |
|
27.3% |
|
|
18.2% |
|
|
18.2% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
Windows 7 |
63.6% |
|
Windows 10 |
36.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0003fa56 |
Name |
Size of data |
MD5 |
.text |
435712 |
6b8842610cf6ea06da33fd0a1282367d |
.rdata |
111616 |
fa2944633d3fcf240bbafbf821814c04 |
.data |
16384 |
7e4dcf1f11159d966a92e3298d7d6fea |
.reloc |
22528 |
309694def4616573de63de52b77278ac |