How to remove gplyra.exe.quarantined
- File Details
- Overview
- Analysis
gplyra.exe.quarantined
The module gplyra.exe.quarantined has been detected as Trojan.CoinMiner
File Details
MD5: |
a8484696e3cad48620e7746cb8d82af9 |
Size: |
2 MB |
First Published: |
2017-05-21 03:02:08 (7 years ago) |
Latest Published: |
2020-08-26 00:54:55 (4 years ago) |
Status: |
Trojan.CoinMiner (on last analysis) |
|
Analysis Date: |
2020-08-26 00:54:55 (4 years ago) |
%appdata%\gplyra\gplyra |
%sysdrive%\adwcleaner\quarantine\files\emuyudrfljhdnoucoinmevkkprkzqzfv\gplyra |
%sysdrive%\quarantine_mzk\folders\201705094531730\gplyra. 4.54.33.88\gplyra |
%sysdrive%\adwcleaner\quarantine\files\kwqvdeywicankfoswmzmgvbbvtnlzxnf\gplyra |
%sysdrive%\adwcleaner\quarantine\files\qocmrdmzqlrfeclojzraqivgxkpxvsex\gplyra |
%sysdrive%\adwcleaner\quarantine\files\auogudmzwnkzuvaykfqswiyjkxxtzcww\gplyra |
%sysdrive%\adwcleaner\quarantine\files\tyybsvbqbnxajifukfhikaasymvubahu\gplyra |
%sysdrive%\adwcleaner\quarantine\files\jmekelkvjwvqzgknpikwuwhegxsemftg\gplyra |
%sysdrive%\adwcleaner\quarantine\files\uqskhsznzmbouieqaypnykdkxhlwnbdb\gplyra |
%sysdrive%\adwcleaner\quarantine\files\rhawayztmzjjnrykvmjveqgkdknfwdaf\gplyra |
gplyra.exe |
gplyra.exe.quarantined |
|
18.2% |
|
|
17.1% |
|
|
9.4% |
|
|
9.1% |
|
|
6.1% |
|
|
4.2% |
|
|
3.5% |
|
|
3.1% |
|
|
2.3% |
|
|
2.3% |
|
|
2.1% |
|
|
1.9% |
|
|
1.4% |
|
|
1.4% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
Windows 10 |
55.9% |
|
Windows 7 |
29.4% |
|
Windows 8.1 |
12.5% |
|
Windows 8 |
2.1% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x001cc566 |
Name |
Size of data |
MD5 |
.text |
1886208 |
a429e8fe19f4718e7638ce9af4b4dc86 |
.rdata |
482304 |
33c4ac0778016ff78f3fb8a442f7029c |
.data |
327168 |
feab9fb3fdd4ebe4406ca6f72986073c |
.ctors |
512 |
864fd7266facfbadd193d7895c1b1ac3 |
.dtors |
512 |
0e9c21eddc283881ca069df3fb54b1b7 |
.rsrc |
512 |
fd7f3c77b3b8152760b71a549e0deae5 |
.reloc |
96256 |
0a7943827ffe484e323548a9a935b4f6 |