How to remove A0028836.exe
- File Details
- Overview
- Analysis
A0028836.exe
The module A0028836.exe has been detected as Trojan.Gen
File Details
| MD5: |
3d4b53eb549585ee077617f61072c6e7 |
| Size: |
4 MB |
| First Published: |
2017-05-24 16:11:43 (8 years ago) |
| Latest Published: |
2022-11-16 23:41:49 (3 years ago) |
| Status: |
Trojan.Gen (on last analysis) |
|
| Analysis Date: |
2022-11-16 23:41:49 (3 years ago) |
Overview
| %sysdrive%\system volume information\_restore{cd251913-093a-471d-bd79-c51a04e4c3ed}\rp33 |
| %sysdrive%\$recycle.bin\s-1-5-21-1259712854-4029676542-136366211-1001 |
| %desktop% |
| %sysdrive%\dirtrally |
| %sysdrive% |
| %sysdrive%\$recycle.bin |
| %desktop%\desktop\lego |
| %profile%\downloads\juegos\juego rocket |
| %sysdrive%\迅雷下载\stronghold.crusader.hd.and.extreme.hd.build.20170705-ali213 |
| %sysdrive%\雷电 |
| 开始游戏.exe |
| A0028836.exe |
| game.exe |
| $RCK5QBD.exe |
| A0091375.exe |
| _.exe |
| kdgn.exe |
| $R31MCM0.exe |
| $RLDNJAR.exe |
| $RD930O7.exe |
| $R9A78LD.exe |
| Rocket.exe |
| $R3IKSVF.exe |
|
57.1% |
|
|
16.7% |
|
|
4.0% |
|
|
2.5% |
|
|
2.0% |
|
|
2.0% |
|
|
1.5% |
|
|
1.5% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
| Windows 10 |
71.1% |
|
| Windows 7 |
26.9% |
|
| Windows 8.1 |
1.0% |
|
| Windows XP |
1.0% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00059fb1 |
| Name |
Size of data |
MD5 |
| .text |
502784 |
9ecf3a9b3a2bfde784fde6faad33f3ee |
| .rdata |
103936 |
55e4a94e01cb5917f980fd0020332f1f |
| .data |
9216 |
b9ffea0ee5ea79527824357d2a84abf0 |
| .rsrc |
4237824 |
b5f8bdffc6e7465ba8bbfaeabc741012 |