How to remove WindowsFormsApplication5.exe
- File Details
- Overview
- Analysis
WindowsFormsApplication5.exe
The module WindowsFormsApplication5.exe has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
90153b89a25ebc688cb651f35e23a38a |
Size: |
13 KB |
First Published: |
2018-06-09 07:03:41 (6 years ago) |
Latest Published: |
2018-06-09 07:03:43 (6 years ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2018-06-09 07:03:43 (6 years ago) |
%mydoc%\dayo - old docs\dayo\doc recovery\dayo iaaq user\user\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\bin |
%mydoc%\dayo - old docs\dayo\doc recovery\dayo iaaq user\user\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\obj\x86 |
%mydoc%\toshiba_goes back\users\bukki\documents\dayo iaaq user\user\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\bin |
%mydoc%\toshiba_goes back\users\bukki part\dayo iaaq user\user\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\bin |
%mydoc%\dayo - old docs\dayo\drive-n-go\iaaq backup usb\iaaq-station\backup set 2015-11-23 040042\backup files 2015-11-23 040042\backup files 4.zip\c\users\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\obj\x86 |
%mydoc%\dayo - old docs\dayo\drive-n-go\iaaq backup usb\iaaq-station\backup set 2015-11-23 040042\backup files 2015-11-23 040042\backup files 4.zip\c\users\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\bin |
%mydoc%\toshiba_goes back\users\bukki\documents\dayo iaaq user\user\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\obj\x86 |
%mydoc%\toshiba_goes back\users\bukki part\dayo iaaq user\user\iaaq\documents\visual studio 2010\projects\windowsformsapplication5\windowsformsapplication5\obj\x86 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000048ce |
MVID: |
ce492d03-d0c9-4544-b0e2-1b4d833005c3 |
Typelib ID: |
b0d308f1-804a-4d07-9c60-27f2f072b0ed |
Name |
Size of data |
MD5 |
.text |
10752 |
7368a5e5ccbcfc2f915ae6c1a35c5186 |
.rsrc |
2048 |
33b2ccf13f63c3d4c84c846f407248a3 |
.reloc |
512 |
1a9c2b06c47587bbef8306504d045b2e |