How to remove IUWo.exe
IUWo.exe
The module IUWo.exe has been detected as Trojan.Zegost
File Details
Product Name: | Windows system files |
Company Name: | Windows system files Inc. |
MD5: | 2ae81302ee475219b0bcf0f177bfae7e |
Size: | 161 KB |
First Published: | 2017-09-13 09:05:04 (7 years ago) |
Latest Published: | 2018-12-25 09:31:59 (6 years ago) |
Status: | Trojan.Zegost (on last analysis) | |
Analysis Date: | 2018-12-25 09:31:59 (6 years ago) |
Common Places:
%sysdrive%\windows |
%windir%\syswow64 |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
File Names:
System.exe |
IUWo.exe |
inul.exe |
Serovices.exe |
WjRX.exe |
CXKE.exe |
khbE.exe |
vhzw.exe |
rzmN.exe |
system.exe |
LsZw.exe |
cQIO.exe |
aJCf.exe |
alvl.exe |
SNcQ.exe |
qZBs.exe |
vwuq.exe |
COEA.exe |
GcGc.exe |
TCCj.exe |
oqiE.exe |
SpuU.exe |
MLFi.exe |
wnjE.exe |
HhfL.exe |
mocM.exe |
XVEH.exe |
Offz.exe |
FDmX.exe |
STNZ.exe |
tBHE.exe |
wneT.exe |
RXvD.exe |
hSXD.exe |
GZWB.exe |
XElM.exe |
SHLe.exe |
XKKR.exe |
Rcar.exe |
ojIv.exe |
iWxP.exe |
Geography:
50.5% | ||
39.4% | ||
9.1% | ||
1.0% |
OS Version:
Windows Server 2012 R2 | 72.6% | |
Windows Server 2008 R2 | 24.2% | |
Windows 10 | 3.2% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00014300 |
PE Sections:
Name | Size of data | MD5 |
.text | 116224 | ec88d417aa17dc685d4deeb7a937bc6b |
.rdata | 13824 | 814eef5f103f4995fae7d055b8d65d73 |
.data | 31744 | 463bca28492c372a4999962b03057b68 |
.rsrc | 2048 | 544e7c992d46b4bc372ecf7efb858d63 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for IUWo.exe