How to remove Unconfirmed 685057.crdownload
- File Details
- Overview
- Analysis
Unconfirmed 685057.crdownload
The module Unconfirmed 685057.crdownload has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
41f04143113a759524bd13993afa4b8e |
Size: |
1 MB |
First Published: |
2018-01-11 10:07:54 (6 years ago) |
Latest Published: |
2024-11-19 23:06:38 (a day ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2024-11-19 23:06:38 (a day ago) |
Overview
%profile% |
%sysdrive%\download programs-for windows setup |
%profile%\downloads |
%sysdrive%\downloads |
%sysdrive% |
%desktop% |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
%sysdrive%\$recycle.bin |
%localappdata%\microsoft\windows\inetcache\low\ie |
%profile%\dministrateur\mes documents |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215).exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)_2.exe |
UCBrowser.exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)[1].exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)a.exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215) (1).exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215) (2).exe |
$RGIENVP.exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)[2].exe |
UCBrowser_V7.0.185.1002_4601_(Build1801021540)_(en-us)_online_installer[1].exe |
UCBrowser_V7.0.185.1002_4601_(Build1801021540)_(en-us)_online_installer.exe |
A0477825.exe |
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215) (3).exe |
UCBrowser_Rus_Setup.exe |
$R2QSWNJ.exe |
Navegador UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215).exe |
$RW6QCJE.exe |
UC Browser Hattec.exe |
Unconfirmed 685057.crdownload |
|
17.1% |
|
|
8.7% |
|
|
6.7% |
|
|
6.1% |
|
|
5.8% |
|
|
5.2% |
|
|
5.2% |
|
|
4.1% |
|
|
3.2% |
|
|
2.9% |
|
|
2.9% |
|
|
2.0% |
|
|
2.0% |
|
|
1.7% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
61.1% |
|
Windows 7 |
29.6% |
|
Windows 8.1 |
6.5% |
|
Windows XP |
1.7% |
|
Windows 8 |
0.6% |
|
Windows Vista |
0.3% |
|
Windows Server 2012 R2 |
0.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00092dd7 |
Name |
Size of data |
MD5 |
.text |
757760 |
4146d4f3393275bac506310089c02828 |
.rdata |
143360 |
13e1bc9c9dc01ea939d0201adc56fb27 |
.data |
5632 |
8ad7249d8b767408ef56f1696209f8e9 |
.gfids |
1024 |
1a6b26a184eb9a52b5d943a38112d90c |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
751104 |
1f32565b41dc516871c3c701e5639107 |
.reloc |
28160 |
451116e9f5330ffa62b486ff94081e12 |