How to remove ZebraFD.exe
- File Details
- Overview
- Analysis
ZebraFD.exe
The module ZebraFD.exe has been detected as Trojan.CoinMiner
File Details
Company Name: |
|
MD5: |
82ac9ec23928dfa3dca8f6d041039fd5 |
Size: |
2 MB |
First Published: |
2018-09-06 10:09:12 (6 years ago) |
Latest Published: |
2020-10-01 03:43:59 (4 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2020-10-01 03:43:59 (4 years ago) |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
%commonappdata%\{ad55e916-8a04-4218-8d53-a7653b27079d}\offline\97ed6f40 |
|
21.4% |
|
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
Windows 10 |
57.1% |
|
Windows 7 |
35.7% |
|
Windows 8.1 |
7.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00009820 |
Name |
Size of data |
MD5 |
CODE |
36864 |
5b5fa5263e160a2eeee2ce0fa1f8a7db |
DATA |
1024 |
d8b6954551cae1ae096a5422ff951dd5 |
BSS |
0 |
00000000000000000000000000000000 |
.idata |
2560 |
1dd439711b01bd6df25c589b77cf553c |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
d293bf8d4ebe9826d58e1d27c25fe4b6 |
.reloc |
0 |
00000000000000000000000000000000 |
.rsrc |
13824 |
76dc2ec6b3e3383b2d1f9d74d14b72b5 |