How to remove SDI_R1909.exe
- File Details
- Overview
- Analysis
SDI_R1909.exe
The module SDI_R1909.exe has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
02f57a16aaf3d05f37d8356d474a37c6 |
Size: |
4 MB |
First Published: |
2020-04-23 07:18:22 (4 years ago) |
Latest Published: |
2023-05-22 23:02:29 (2 years ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2023-05-22 23:02:29 (2 years ago) |
%sysdrive%\administrator_d\download\2020 |
%sysdrive%\$recycle.bin\s-1-5-21-2823654897-835033482-1965837450-1000 |
%sysdrive%\$recycle.bin |
%desktop% |
%sysdrive% |
%sysdrive%\????? |
%sysdrive%\kit |
%profile%\downloads |
%sysdrive%\a |
%sysdrive%\programas |
|
28.6% |
|
|
12.5% |
|
|
8.9% |
|
|
7.1% |
|
|
7.1% |
|
|
5.4% |
|
|
3.6% |
|
|
3.6% |
|
|
3.6% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
Windows 10 |
57.4% |
|
Windows 7 |
41.0% |
|
Windows 8.1 |
1.6% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000014e0 |
Name |
Size of data |
MD5 |
.text |
3180032 |
50716b2e6127ee8678a89eba36124ac5 |
.data |
60416 |
3ed9cfa300272869c942ae32d1fbda9e |
.rdata |
324608 |
4ef96790b6a3e9992b86e2724d1a0838 |
.eh_fram |
802304 |
3103577128f064b52768634c4af0a378 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
16384 |
36973f6731517a4f05195b20951f6e1b |
.CRT |
512 |
3d8d4d0f54b102f9d31db55d5f0e0f4e |
.tls |
512 |
b51c5640d47e4d42a7059ad469346de8 |
.rsrc |
425472 |
92d81499f5727dab3398ef94663e1161 |