How to remove KnightOnLine.exe
- File Details
- Overview
- Analysis
KnightOnLine.exe
The module KnightOnLine.exe has been detected as Trojan.Gen
File Details
MD5: |
ade4cb3791da2069fa535952bb470460 |
Size: |
5 MB |
First Published: |
2020-04-23 05:08:33 (4 years ago) |
Latest Published: |
2020-09-27 19:11:18 (4 years ago) |
Status: |
Trojan.Gen (on last analysis) |
|
Analysis Date: |
2020-09-27 19:11:18 (4 years ago) |
Overview
%sysdrive%\nttgame |
%sysdrive%\system volume information\systemrestore\frstaging\nttgame |
Windows 7 |
50.0% |
|
Windows 10 |
50.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00341800 |
Name |
Size of data |
MD5 |
|
3413504 |
f10868a368b79f31b165476e26336b07 |
.rsrc |
734720 |
e883f2f3384bd3dfb50a6a0ea966a73e |
.naim |
33542 |
d8874ff2b80192996d938db6ae92f631 |
.idata |
1024 |
0e8d91ccf9aa72a9c61ff97bf248247a |
|
512 |
72ed44af0f4ed3b795d561ac1682ae3f |
juoxbibo |
1683968 |
d19130035e5b955f67f6d0791526e6fe |
agpmsgnp |
512 |
f28752bff5c334ff7179714e7d9ce868 |