How to remove etchCore-0.x86.dll
- File Details
- Overview
- Analysis
etchCore-0.x86.dll
The module etchCore-0.x86.dll has been detected as Trojan.Agent
File Details
MD5: |
1f0669f13dc0545917e8397063f806db |
Size: |
139 KB |
First Published: |
2017-07-18 23:06:47 (6 years ago) |
Latest Published: |
2024-03-23 23:02:53 (3 weeks ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2024-03-23 23:02:53 (3 weeks ago) |
%appdata%\ltdltd61\ea |
%appdata%\notifynotify82\ea |
%system%\mfen.exe |
%windir%\setup\fou |
%windir%\system32 |
%windir%\syswow64 |
%commonappdata%\microsoft\network |
%windir%\ime |
%system% |
%commonappdata%\microsoft |
|
50.3% |
|
|
17.7% |
|
|
5.0% |
|
|
4.1% |
|
|
3.7% |
|
|
3.5% |
|
|
2.3% |
|
|
1.9% |
|
|
1.2% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 7 |
87.5% |
|
Windows 10 |
5.8% |
|
Windows Server 2008 R2 |
3.8% |
|
Windows XP |
1.1% |
|
Windows 8.1 |
1.1% |
|
Windows Vista |
0.5% |
|
Windows Web Server 2008 R2 |
0.1% |
|
Windows 8 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x0001a245 |
Name |
Size of data |
MD5 |
.text |
109056 |
ed85b0ed456d8036eae8f9c4c43d9856 |
.rdata |
16896 |
25849a0cedfad64ac30b82814cd7decd |
.data |
11264 |
8b14616db808bda30ea80f3254b84dd2 |
.reloc |
4608 |
d6e9e1daaacbd4932a7386014670baf3 |