How to remove trzD0F.tmp
trzD0F.tmp
The module trzD0F.tmp has been detected as Trojan.Agent
File Details
MD5: | 838ceb02081ac27de43da56bec20fc76 |
Size: | 58 KB |
First Published: | 2017-07-10 09:13:10 (6 years ago) |
Latest Published: | 2024-03-23 23:02:56 (4 days ago) |
Status: | Trojan.Agent (on last analysis) | |
Analysis Date: | 2024-03-23 23:02:56 (4 days ago) |
Common Places:
%sysdrive%\sysdata |
%appdata%\ltdltd61\ea |
%sysdrive%\windows.old\users\toshiba\appdata\local\temp\305576 |
%sysdrive%\windows.old\users\toshiba\appdata\local\temp\2510001 |
%sysdrive%\windows.old\users\toshiba\appdata\local\temp\312898 |
%temp%\1317829 |
%profile%\ocalservice\local settings\temp\1195433385 |
%profile%\ocalservice\local settings\temp\1150596088 |
%profile%\ocalservice\local settings\temp\1266698628 |
%profile%\ocalservice\local settings\temp\1229191031 |
File Names:
trch-1.dll |
trch-1.Vdll |
trz4183.tmp |
trch-1.dll.quarantined |
trzD0F.tmp |
Geography:
38.8% | ||
11.5% | ||
9.0% | ||
8.7% | ||
5.2% | ||
3.5% | ||
2.3% | ||
2.1% | ||
2.1% | ||
1.5% | ||
1.5% | ||
1.3% | ||
1.0% | ||
1.0% | ||
0.9% | ||
0.8% | ||
0.6% | ||
0.6% | ||
0.5% | ||
0.5% | ||
0.4% | ||
0.4% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.3% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.2% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% | ||
0.1% |
OS Version:
Windows 7 | 84.5% | |
Windows 10 | 8.1% | |
Windows Server 2008 R2 | 4.1% | |
Windows XP | 1.1% | |
Windows 8.1 | 1.0% | |
Windows Server 2012 R2 | 0.4% | |
Windows Vista | 0.3% | |
Windows Server 2003 | 0.2% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x10000000 |
Entry Address: | 0x0000ae66 |
PE Sections:
Name | Size of data | MD5 |
.text | 41984 | fee8c6c98fa7870930d253e1f2451e8b |
.rdata | 12288 | f516f15a24c054e830bd38efa71be4f4 |
.data | 1024 | 16c5d5789c52a6bd9def8475120db547 |
.reloc | 3584 | 67ea97eb23622da9da026b6aa9116b30 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for trzD0F.tmp