How to remove play.exe
play.exe
The module play.exe has been detected as Trojan.Gen
File Details
Product Name: | WebZen mu main |
Company Name: | WebZen |
MD5: | ffab482eefc7ee16e901eac490c170f7 |
Size: | 5 MB |
First Published: | 2018-03-17 08:06:48 (6 years ago) |
Latest Published: | 2018-10-05 04:04:37 (5 years ago) |
Status: | Trojan.Gen (on last analysis) | |
Analysis Date: | 2018-10-05 04:04:37 (5 years ago) |
Common Places:
%sysdrive%\games |
%desktop% |
%sysdrive%\$recycle.bin\s-1-5-21-3647209168-1975579208-984302530-1000 |
%sysdrive%\new folder (3)\new folder\sin sonido crews mu fast |
%desktop%\juegos |
%sysdrive%\$recycle.bin\s-1-5-21-3936693420-3342688953-4291315353-1001 |
File Names:
main.exe |
Main.exe |
Geography:
25.0% | ||
25.0% | ||
12.5% | ||
12.5% | ||
12.5% | ||
12.5% |
OS Version:
Windows 7 | 75.0% | |
Windows 10 | 25.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0002e33d |
PE Sections:
Name | Size of data | MD5 |
2809856 | 931496feefc454c7d171df7b70257f66 | |
510976 | a55db2a8a1d558e9ee01ebbb650ceb61 | |
51200 | 62de0ab6050eb3c6d9f2d8cc2cabb556 | |
512 | fed26e7631a3b42e366a516ce69a450a | |
2560 | 6381e1e641220869072da27cfc8fccf4 | |
.rsrc | 9216 | ca81b7b9f08b91df4dc062631364a209 |
317440 | 9aa8774806a87557b5f54571fb5565f1 | |
.data | 1893888 | 815c295377d20a559f774e7bcbbc01ca |
More information:
Download GridinSoft
Anti-Malware - Removal tool for play.exe