How to remove file8[1].exe
- File Details
- Overview
- Analysis
file8[1].exe
The module file8[1].exe has been detected as Trojan.Agent
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
f890dc9a8c2e6e35f191229672d0441a |
| Size: |
3 MB |
| First Published: |
2021-08-29 20:31:39 (4 years ago) |
| Latest Published: |
2022-04-17 23:13:04 (3 years ago) |
| Status: |
Trojan.Agent (on last analysis) |
|
| Analysis Date: |
2022-04-17 23:13:04 (3 years ago) |
Overview
| Signed By: |
Corel Corporation |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
| %localappdata%\microsoft\windows\inetcache\ie |
| %sysdrive%\$recycle.bin |
| %mydoc% |
| %mydoc% |
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x005a6e68 |
| Name |
Size of data |
MD5 |
| |
104960 |
9037b12f4f3f7ec70ad089b33101eab3 |
| |
2048 |
2e626fe5b00b7db165a846c30037d6ba |
| |
59904 |
a70ddfa40e89665f6de9dd3287ed0195 |
| |
512 |
632afff69f0b82e7c8e3a98e98eb100f |
| .idata |
512 |
dce39389c318bcd215a7eca516e3ae5d |
| } ( UK ð |
117760 |
e993d91f4897ce5e799850abfa9af013 |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .boot |
2949120 |
77924537997da1233fffd227cee9cb86 |
| } ( UK ð |
2560 |
ca727814e5359d603481dd25d586fc9e |
| } ( UK ð |
2560 |
e6af9944a3e469a63fc0264a5f85f65b |
| } ( UK ð |
2560 |
3195845a2555c557cb4a9995f74f9f5a |
| } ( UK ð |
2560 |
a84fa215205969300cbae431214e576a |
| .rsrc |
117760 |
08c6a0f769e4f87e7881002aa5db512f |