How to remove RogueKillerCMD.exe
- File Details
- Overview
- Analysis
RogueKillerCMD.exe
The module RogueKillerCMD.exe has been detected as SMB Protocol (Suspicious)!yf
File Details
Product Name: |
|
Company Name: |
|
MD5: |
9e01549297294d45fbde9972323fa485 |
Size: |
4 MB |
First Published: |
2018-04-03 14:09:27 (6 years ago) |
Latest Published: |
2018-04-03 14:09:27 (6 years ago) |
Status: |
SMB Protocol (Suspicious)!yf (on last analysis) |
|
Analysis Date: |
2018-04-03 14:09:27 (6 years ago) |
%localappdata%\tific\cache\avast.tific.com\d2005002.tfc\tron\resources\stage_3_disinfect |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x001eb46c |
Name |
Size of data |
MD5 |
.text |
2883072 |
26680682153763f369feecbefc9f2173 |
.rdata |
616960 |
1249d6e44aad7c487330e1f22a37094f |
.data |
163328 |
e7f2320b20235f17215585b33683cdb3 |
.rsrc |
1008640 |
f3e7a810f9d05aa25ec3b035b9f3b1df |
.reloc |
164352 |
10458a964e6d159b78defda0d6133cfc |