How to remove etch-0.dll.vir
- File Details
- Overview
- Analysis
etch-0.dll.vir
The module etch-0.dll.vir has been detected as Trojan.Agent
File Details
| MD5: |
3e5d06dc6e7890e1800cf24c9f599856 |
| Size: |
155 KB |
| First Published: |
2017-07-18 23:06:47 (8 years ago) |
| Latest Published: |
2025-05-31 23:03:20 (6 months ago) |
| Status: |
Trojan.Agent (on last analysis) |
|
| Analysis Date: |
2025-05-31 23:03:20 (6 months ago) |
| %appdata%\ltdltd61\ea |
| %appdata%\notifynotify82\ea |
| %windir%\setup\fou |
| %system%\mfen.exe |
| %windir%\system32 |
| %windir%\syswow64 |
| %commonappdata%\microsoft\network |
| %windir%\ime |
| %system% |
| %commonappdata%\microsoft |
| etch-0.dll |
| etch-0.dll.vir |
|
50.1% |
|
|
17.8% |
|
|
5.2% |
|
|
4.1% |
|
|
3.7% |
|
|
3.5% |
|
|
2.3% |
|
|
1.8% |
|
|
1.2% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
| Windows 7 |
87.7% |
|
| Windows 10 |
5.7% |
|
| Windows Server 2008 R2 |
3.6% |
|
| Windows XP |
1.1% |
|
| Windows 8.1 |
1.1% |
|
| Windows Vista |
0.5% |
|
| Windows Web Server 2008 R2 |
0.1% |
|
| Windows 8 |
0.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x10000000 |
| Entry Address: |
0x0001a6f8 |
| Name |
Size of data |
MD5 |
| .text |
117760 |
91fb410e7c5a949579c237c60c282038 |
| .rdata |
23552 |
7d263a26aaddad0a46f435a71f7a9863 |
| .data |
11264 |
66bda3ef984d41e101986c1c029b6aa1 |
| .reloc |
5120 |
af0f3115f0c84aef505c5c342614eaf8 |