How to remove gunsrush_booster (1).exe
- File Details
- Overview
- Analysis
gunsrush_booster (1).exe
The module gunsrush_booster (1).exe has been detected as Trojan.Disfa
File Details
Product Name: |
|
Company Name: |
|
MD5: |
966ecd2fc22e5dfc51b8b00a9de2dd88 |
Size: |
44 KB |
First Published: |
2017-10-06 12:06:44 (7 years ago) |
Latest Published: |
2019-08-31 20:40:18 (5 years ago) |
Status: |
Trojan.Disfa (on last analysis) |
|
Analysis Date: |
2019-08-31 20:40:18 (5 years ago) |
Overview
%profile%\downloads |
%sysdrive%\c |
%profile% |
%sysdrive%\cftech-pc\backup set 2017-12-16 152338\backup files 2017-12-16 152338\backup files 13.zip\c\users\源鑫 |
%sysdrive%\cftech-pc\backup set 2018-01-14 201517\backup files 2018-01-14 201517\backup files 14.zip\c\users\源鑫 |
%sysdrive%\_backup7 |
gunsrush_booster.exe |
gunsrush_booster (1).exe |
gunsrush_booster (3).exe |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000031be |
MVID: |
b3c377aa-34c7-4952-aaf1-ef568dfb0e3c |
Typelib ID: |
49c61a6e-7b98-43f8-9a64-89bd2366241f |
Name |
Size of data |
MD5 |
.text |
4608 |
0484dde0a909844a3d117194d04aac48 |
.rsrc |
34304 |
9363b2eab92f02b62cc025900d01397e |
.reloc |
512 |
2ce28969d47c7b0609458a0f002fd515 |