How to remove Windows_Loader.exe
- File Details
- Overview
- Analysis
Windows_Loader.exe
The module Windows_Loader.exe has been detected as Trojan.Agent
File Details
MD5: |
54687dfbd4e31c206ea4036fcad32738 |
Size: |
3 MB |
First Published: |
2017-05-21 12:05:56 (7 years ago) |
Latest Published: |
2024-11-08 23:00:45 (a month ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2024-11-08 23:00:45 (a month ago) |
%profile%\downloads\windows_loader_v2.1.7 (1)\windows loader |
%profile%\downloads\windows_loader_v2.1.7 (1).zip\windows loader |
%profile%\downloads\compressed\sinhvienit.net--windows+loader+v2.1.7.rar\windows 7 loader 2.1.7 |
%desktop%\atvdr w7 by ph downs\windows loader |
%profile%\downloads |
%profile%\downloads\compressed\windows loader 2.1.7\windows loader 2.1.7 |
%profile%\downloads\ativador windows 7 [wesley ferreira]\windows loader |
%sysdrive%\armazém dos biindchens\odacir clévio\reverendo\pel da cruz de sls\rascunho\atvw7.rar\ativador windows 7\windows loader - therevolution.com.br |
%profile%\downloads\ativador windows 7 [wesley ferreira].rar\ativador windows 7 [wesley ferreira]\windows loader |
%sysdrive%\armazém dos biindchens\odacir clévio\meus arquivos recebidos\2016\atvdr w7 by ph downs.rar\atvdr w7 by ph downs\windows loader |
Windows Loader.exe |
Active_Windows_Moi_Phien_Ban_TienIchMayTinh.Com.exe |
Windows Loader v2.1.7.exe |
windows loader.exe |
windows_loader.exe |
GRD_Active.exe |
Active_Windows.exe |
$RGGWQVV.exe |
Loader.exe |
A0145771.exe |
A0146061.exe |
WindowsLoader.exe |
win loader 2.1.7.exe |
run.exe |
gWindows Loader.exe |
Windows 2.1 Loader.exe |
WINDOWS LOADER.EXE |
Active Window 7.exe |
Patch.exe |
wl.exe |
A0004868.exe |
windows loader v2.1.7.exe |
$R0W78A0.exe |
A0065808.exe |
A0058921.exe |
Windows Loader (1).exe |
Windows_Loader.exe |
|
30.5% |
|
|
9.6% |
|
|
6.2% |
|
|
5.8% |
|
|
3.9% |
|
|
3.6% |
|
|
3.5% |
|
|
2.7% |
|
|
2.6% |
|
|
2.1% |
|
|
2.0% |
|
|
1.9% |
|
|
1.9% |
|
|
1.8% |
|
|
1.8% |
|
|
1.4% |
|
|
1.3% |
|
|
1.1% |
|
|
1.1% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 7 |
75.7% |
|
Windows 10 |
21.7% |
|
Windows 8.1 |
1.6% |
|
Windows 8 |
0.6% |
|
Windows XP |
0.2% |
|
Windows Vista |
0.1% |
|
Windows Server 2008 R2 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0021a9a0 |
Name |
Size of data |
MD5 |
UPX0 |
0 |
00000000000000000000000000000000 |
UPX1 |
591360 |
e861116997c1a6458a8416e043e787af |
.rsrc |
27136 |
469fa39e2e2944c38ba0e71d920f3527 |