How to remove w3l_momo.exe
- File Details
- Overview
- Analysis
w3l_momo.exe
The module w3l_momo.exe has been detected as Trojan.Gen
File Details
| MD5: |
2c6e63030d44ad21dc1d79ba5ab5e344 |
| Size: |
3 KB |
| First Published: |
2017-05-29 16:05:49 (8 years ago) |
| Latest Published: |
2025-08-27 23:00:55 (4 months ago) |
| Status: |
Trojan.Gen (on last analysis) |
|
| Analysis Date: |
2025-08-27 23:00:55 (4 months ago) |
| %programfiles%\dota-spb.clan.su\warcraft 3 frozen throne\warrun2.5 |
| %desktop%\игра\warcraft 3 frozen throne\warrun2.5 |
| %sysdrive%\games\warcraft 3 frozen throne\warrun2.5 |
| %desktop%\значки\2345\warcraft 3 frozen throne\warrun2.5 |
| %desktop%\魔獸三\魔獸三 |
| %sysdrive% |
| %sysdrive%\warcraft 3 frozen throne |
| %sysdrive%\games\warcraft 3 frozen throne |
| %sysdrive%\wd 1tb\暫存用u3 |
| %sysdrive%\wd 1tb\暫存用u3\遊戲夾 |
|
46.6% |
|
|
19.8% |
|
|
13.7% |
|
|
8.4% |
|
|
3.1% |
|
|
2.3% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
| Windows 7 |
48.1% |
|
| Windows 10 |
44.3% |
|
| Windows 8.1 |
6.1% |
|
| Windows Vista |
0.8% |
|
| Windows XP |
0.8% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000092d0 |
| Name |
Size of data |
MD5 |
| foo. |
0 |
00000000000000000000000000000000 |
| bar. |
1024 |
bfff6eb45b313c26a60ca42b35d3a517 |
| .baz. |
1536 |
f6f5032786012f5b7ce2ce03633c7998 |