How to remove pcreposix-0.dll
- File Details
- Overview
- Analysis
pcreposix-0.dll
The module pcreposix-0.dll has been detected as Trojan.ShadowBrokers
File Details
| MD5: |
30017e300c6d92e126bf92017c195c37 |
| Size: |
9 KB |
| First Published: |
2017-07-18 23:06:47 (8 years ago) |
| Latest Published: |
2025-05-31 23:03:04 (8 months ago) |
| Status: |
Trojan.ShadowBrokers (on last analysis) |
|
| Analysis Date: |
2025-05-31 23:03:04 (8 months ago) |
| %appdata%\ltdltd61\ea |
| %appdata%\notifynotify82\ea |
| %system%\mfen.exe |
| %windir%\setup\fou |
| %commonappdata%\rundll |
| %windir%\system32 |
| %commonappdata%\svhost |
| %temp%\5\rarsfx3 |
| %sysdrive%\$recycle.bin\s-1-5-21-2570348591-2767011175-3200952900-1016\$ro0c72t.rar\445\run\specials |
| %commonappdata%\temp\445.zip\run\specials |
|
39.5% |
|
|
12.3% |
|
|
9.5% |
|
|
8.3% |
|
|
3.9% |
|
|
3.6% |
|
|
2.4% |
|
|
2.0% |
|
|
1.7% |
|
|
1.7% |
|
|
1.5% |
|
|
1.4% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
| Windows 7 |
86.1% |
|
| Windows 10 |
9.0% |
|
| Windows Server 2008 R2 |
2.4% |
|
| Windows 8.1 |
1.1% |
|
| Windows XP |
0.7% |
|
| Windows Server 2012 R2 |
0.3% |
|
| Windows Vista |
0.3% |
|
| Windows Web Server 2008 R2 |
0.1% |
|
| Windows Server 2003 |
0.1% |
|
| Windows 8 |
0.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x10000000 |
| Entry Address: |
0x00001a5e |
| Name |
Size of data |
MD5 |
| .text |
4096 |
1d810002fbe58fa92df2bf2f9490ad4c |
| .rdata |
2048 |
256a153115db720136a20f5b2228d7d7 |
| .data |
1024 |
1ef7f2514c0dac290533737e44e6df5b |
| .reloc |
1536 |
60a59a7b414974ca3793d1faa3007f41 |