How to remove LR961L6X4W.tmp
- File Details
- Overview
- Analysis
LR961L6X4W.tmp
The module LR961L6X4W.tmp has been detected as Backdoor.Farfli
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8074f73f7742309b033676cd03eb0928 |
Size: |
6 KB |
First Published: |
2021-05-10 20:15:32 (4 years ago) |
Latest Published: |
2024-12-10 23:01:32 (7 months ago) |
Status: |
Backdoor.Farfli (on last analysis) |
|
Analysis Date: |
2024-12-10 23:01:32 (7 months ago) |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
|
16.7% |
|
|
8.4% |
|
|
5.7% |
|
|
5.6% |
|
|
3.8% |
|
|
3.2% |
|
|
3.2% |
|
|
2.9% |
|
|
2.8% |
|
|
2.7% |
|
|
2.2% |
|
|
2.1% |
|
|
2.0% |
|
|
1.9% |
|
|
1.7% |
|
|
1.6% |
|
|
1.6% |
|
|
1.5% |
|
|
1.5% |
|
|
1.4% |
|
|
1.4% |
|
|
1.3% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.0% |
|
|
1.0% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
98.2% |
|
Windows 7 |
1.3% |
|
Windows 8.1 |
0.5% |
|
Windows 8 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x00001470 |
Name |
Size of data |
MD5 |
.text |
1536 |
935648e44e337206c1f312c855fa03d4 |
.rdata |
1024 |
f25e22cdc6d51aaa021823a9f5dfb066 |
.data |
512 |
8fc5302e0b318833e8332762b74b7603 |
.pdata |
512 |
42c0ac02c55f141a7fff6ee9ccf1ea78 |
.rsrc |
1536 |
de4a51dd3596d9d560e49e46d6704ca7 |