How to remove temp_mload.exe
- File Details
- Overview
- Analysis
temp_mload.exe
The module temp_mload.exe has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
ada8f6484eaee54d6078d67d6835c1b1 |
Size: |
2 MB |
First Published: |
2017-11-27 19:11:18 (7 years ago) |
Latest Published: |
2020-07-02 23:04:44 (4 years ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2020-07-02 23:04:44 (4 years ago) |
%desktop%\mbot |
%desktop%\mbot\bot1 |
%desktop%\mbot\bot2 |
%sysdrive% |
%desktop%\ex sro\çarlar\wizard4(wizard) |
%desktop%\ex sro\çarlar\just_(wizard) |
%desktop%\ex sro\çarlar\___nesly___(wizard) |
%desktop%\ex sro\çarlar\nesly(glavie)\mbot_joysro1 |
%desktop%\ex sro\çarlar\_nesly_(nüker-glev) |
%sysdrive%\crouch\games\pes\darkworldsro-mbotcrack\mbot silkroad |
Windows 7 |
50.0% |
|
Windows 8.1 |
20.8% |
|
Windows 10 |
20.8% |
|
Windows 8 |
8.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000011f0 |
Name |
Size of data |
MD5 |
.text |
30720 |
c478ded282b7727b350d4dc9b70eef9d |
.data |
1024 |
e12b197015ef66eb5903e50b4ec4ecc2 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
2560 |
7f8597beaa4a3fa27eb16a14218aea88 |
.rsrc |
34304 |
8a17da106a102bb5f5b824fbbc259aaa |