How to remove A0320759.exe
- File Details
- Overview
- Analysis
A0320759.exe
The module A0320759.exe has been detected as Trojan.Starter
File Details
Product Name: |
|
Company Name: |
|
MD5: |
6aeaac83d903d03e253d8936fbbb0962 |
Size: |
7 MB |
First Published: |
2018-08-17 11:02:28 (6 years ago) |
Latest Published: |
2018-08-17 11:02:28 (6 years ago) |
Status: |
Trojan.Starter (on last analysis) |
|
Analysis Date: |
2018-08-17 11:02:28 (6 years ago) |
%sysdrive%\system volume information\_restore{4eab92ee-e966-4d87-9a2b-92c35fc5a3a0} |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x005c5d84 |
Name |
Size of data |
MD5 |
.text |
6019072 |
367b0f24f4380fc2df29f729da9e6ab0 |
.itext |
28672 |
47e121866685944909510d7ba3243f25 |
.data |
225280 |
5137d59830ef919a7bb15a3adaf1bea7 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
25088 |
fb105143a96da712cb8f00a90dce6473 |
.edata |
1024 |
c7c65fda74dd92f462b90f21210e7542 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
dd50dbbe9f848ada9347efe5571ee21e |
.reloc |
0 |
00000000000000000000000000000000 |
.rsrc |
757248 |
d4327f3a964057684968ef664f15558f |