How to remove mspass.exe.vir.vir
- File Details
- Overview
- Analysis
mspass.exe.vir.vir
The module mspass.exe.vir.vir has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
df218168bf83d26386dfd4ece7aef2d0 |
Size: |
64 KB |
First Published: |
2017-05-27 13:04:20 (7 years ago) |
Latest Published: |
2024-06-16 23:02:12 (7 months ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2024-06-16 23:02:12 (7 months ago) |
%desktop%\nirsoft_package_1.20.2\nirsoft |
%sysdrive%\system tools\nirlauncher\nirlauncher.package.1.19.97\nirsoft |
%profile%\downloads\nirsoft_package_1.20.2\nirsoft |
%programfiles%\nirsoft\nirsoft |
%localappdata%\microsoft\windows\inetcache\ie\8kkbgkhc\nirsoft_package_1.20.5[1].zip\nirsoft |
%desktop%\nirsoft\nirsoft_package_1.19.119.zip\nirsoft |
%profile%\downloads\ns\nirsoft_package_1.19.118.zip\nirsoft |
%desktop%\nirsoft\nirsoft_package_1.19.119\nirsoft |
%profile%\downloads\ns\nirsoft_package_1.19.118\nirsoft_package_1.19.119.zip\nirsoft |
%sysdrive%\program files local\_utilities\nirsoft_package_1.19.66\nirsoft |
mspass.exe |
mspass.exe.vir.vir |
A0212728.exe |
A0014221.exe |
|
14.2% |
|
|
12.6% |
|
|
8.2% |
|
|
4.8% |
|
|
4.3% |
|
|
3.7% |
|
|
3.4% |
|
|
3.4% |
|
|
3.0% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.5% |
|
|
2.1% |
|
|
2.1% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.1% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
Windows 10 |
58.0% |
|
Windows 7 |
29.4% |
|
Windows 8.1 |
7.6% |
|
Windows XP |
3.4% |
|
Windows 8 |
0.4% |
|
Windows Server 2003 |
0.4% |
|
Windows Server 2012 R2 |
0.4% |
|
Windows Server 2016 |
0.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00022910 |
Name |
Size of data |
MD5 |
UPX0 |
0 |
00000000000000000000000000000000 |
UPX1 |
60416 |
2744c55f9492531a4b18743318cf0a88 |
.rsrc |
4608 |
b17e632bbfe7d4e3411bb02addef3127 |