How to remove dstudio-gui.exe
- File Details
- Overview
- Analysis
dstudio-gui.exe
The module dstudio-gui.exe has been detected as Trojan.LoadMoney
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2416261ab8654d481115791315c4f1a8 |
Size: |
1 MB |
First Published: |
2020-11-03 21:45:05 (4 years ago) |
Latest Published: |
2021-01-08 21:13:33 (4 years ago) |
Status: |
Trojan.LoadMoney (on last analysis) |
|
Analysis Date: |
2021-01-08 21:13:33 (4 years ago) |
Overview
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%temp% |
%programfiles% |
%programfiles% |
|
76.0% |
|
|
8.0% |
|
|
8.0% |
|
|
4.0% |
|
|
4.0% |
|
Windows 10 |
78.6% |
|
Windows 8.1 |
17.9% |
|
Windows 7 |
3.6% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00015801 |
Name |
Size of data |
MD5 |
.text |
103936 |
7a03fd5496f7e6e2302a19dc8139e445 |
.rdata |
986624 |
ce0343fe482d869998b9456bb9d91a15 |
.data |
2048 |
0e9697733b5482cad3845378db7c7735 |
.rsrc |
249344 |
48454e3ad7c2a633e99a79e054292db4 |
.reloc |
15872 |
2da4861fdfbd08a800b65fa0765986c1 |