How to remove blhe.exe
blhe.exe
The module blhe.exe has been detected as General Threat
File Details
Company Name: | www.sordum.org |
MD5: | bade43dfcd898d793f14485f19ae67dd |
Size: | 849 KB |
First Published: | 2017-05-22 10:22:09 (7 years ago) |
Latest Published: | 2019-03-05 18:42:10 (5 years ago) |
Status: | General Threat (on last analysis) | |
Analysis Date: | 2019-03-05 18:42:10 (5 years ago) |
Common Places:
%temp%\nsl281.tmp |
%temp%\nsr6b71.tmp |
%temp%\nsq49ec.tmp |
%temp%\nsr17d9.tmp |
%sysdrive%\docume~1\marcin\ustawi~1\temp\nst20b.tmp |
%temp%\nstcad9.tmp |
%temp%\nsfa93b.tmp |
%temp%\nsceb02.tmp |
%temp%\nsqb10c.tmp |
%temp%\nsf81ef.tmp |
File Names:
hosts.exe |
blhe.exe |
Geography:
30.8% | ||
17.3% | ||
17.3% | ||
13.5% | ||
7.7% | ||
3.8% | ||
3.8% | ||
1.9% | ||
1.9% | ||
1.9% |
OS Version:
Windows 7 | 55.8% | |
Windows 10 | 30.8% | |
Windows 8.1 | 7.7% | |
Windows XP | 5.8% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00016310 |
PE Sections:
Name | Size of data | MD5 |
.text | 524800 | 4627d4c3f2139e42302efc738f3e1893 |
.rdata | 55808 | 255efae198c2dbee6a2f2aee9b79df09 |
.data | 26624 | 9525ee72036a696d9cc29909ab460552 |
.rsrc | 75776 | ce0ede153d3b367c0c42afb8b677a278 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for blhe.exe