How to remove iK6wvTHmqO8RNOioTAwnY9od.exe
- File Details
- Overview
- Analysis
iK6wvTHmqO8RNOioTAwnY9od.exe
The module iK6wvTHmqO8RNOioTAwnY9od.exe has been detected as Trojan.Heur!
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
d05d65f50d190615c6ec13b0190cb778 |
| Size: |
5 MB |
| First Published: |
2023-12-08 23:16:44 (2 years ago) |
| Latest Published: |
2023-12-08 23:24:26 (2 years ago) |
| Status: |
Trojan.Heur! (on last analysis) |
|
| Analysis Date: |
2023-12-08 23:24:26 (2 years ago) |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
| %sysdrive%\windows.old.000\users\wedu manake\appdata\local |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00d3137d |
| Name |
Size of data |
MD5 |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp~÷0 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp~÷1 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp~÷2 |
1024 |
b2bc856e0b081aa3cf5d45ae48a7e1fb |
| .vmp~÷3 |
5872640 |
713b2506249c63cae5b7bf94e14d2ea3 |
| .reloc |
5632 |
067b29029ecf7ffc288ee4d2610d1242 |
| .rsrc |
151552 |
f6da3c8375febe1ba369a2143fe1c655 |