How to remove wzmp_8 (2017_02_19 12_21_52 UTC).exe
- File Details
- Overview
- Analysis
wzmp_8 (2017_02_19 12_21_52 UTC).exe
The module wzmp_8 (2017_02_19 12_21_52 UTC).exe has been detected as General Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
bba06882f9ffc50ebfcbe35ff2fbefec |
Size: |
4 MB |
First Published: |
2017-07-11 18:06:32 (7 years ago) |
Latest Published: |
2019-10-08 04:52:43 (5 years ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2019-10-08 04:52:43 (5 years ago) |
Overview
%sysdrive%\$recycle.bin\s-1-5-21-1434836310-3096947764-3512381566-1001 |
%localappdata%\packages\microsoft.microsoftedge_8wekyb3d8bbwe\ac\#!001\microsoftedge\cache\8xc7rdir |
%profile%\downloads |
%profile%\downloads\downloads |
%profile%\downloads\programs |
%sysdrive%\software\winzipmalware |
%desktop%\nueva carpeta (7)\winzip-malware-protector-v2.1.1000.21743_incl.crack-dfox_uret |
%sysdrive%\en son sürüm arşiv\programlar\katılımsız programlar |
%sysdrive% |
%profile% |
wzmp_8.exe |
wzmp_8 (2017_02_19 12_21_52 UTC).exe |
$R1BS0TK.exe |
wzmp_8[1].exe |
wzmp_8.exe.o4dm2t8.partial |
wzmp_8(1).exe |
wzmp_8 (1).exe |
|
28.3% |
|
|
10.9% |
|
|
10.9% |
|
|
6.5% |
|
|
6.5% |
|
|
6.5% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
Windows 10 |
59.6% |
|
Windows 7 |
29.8% |
|
Windows 8.1 |
8.5% |
|
Windows Vista |
2.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00016478 |
Name |
Size of data |
MD5 |
.text |
82944 |
c9bb3afc1ceaaa31127ccfa204c657ef |
.itext |
3072 |
1ba5adf2e1058c0460dcc814ba86fb32 |
.data |
3584 |
d5b22eff9e08edaa95f493c1a71158c0 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
4096 |
b47eaca4c149ee829de76a342b5560d5 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
3746f5876803f8f30db5bb2deb8772ae |
.rsrc |
73216 |
b4ac14ac26e15eacff63d9bf07006b91 |