How to remove xfplay.exe
xfplay.exe
The module xfplay.exe has been detected as Trojan.Agent
File Details
| Product Name: | xfplay |
| Company Name: | ????? |
| MD5: | b6d14bb939b8385f073bf42d33fb74d8 |
| Size: | 3 MB |
| First Published: | 2020-06-03 03:39:12 (5 years ago) |
| Latest Published: | 2021-01-13 22:26:43 (4 years ago) |
| Status: | Trojan.Agent (on last analysis) | |
| Analysis Date: | 2021-01-13 22:26:43 (4 years ago) |
Overview
| Signed By: | ??????????? |
| Status: | Valid |
Common Places:
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive%\xfmovie |
| %sysdrive% |
| %sysdrive% |
Geography:
| 87.2% | ||
| 12.8% |
OS Version:
| Windows 10 | 79.6% | |
| Windows 7 | 12.2% | |
| Windows 8 | 4.1% | |
| Windows 8.1 | 4.1% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x001c6962 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 2134016 | 1c8364d857d9a29f0a53a8be56da1952 |
| .rdata | 476672 | 7c04ac352f2e7b9c11698cdc8d2b1170 |
| .data | 24576 | 251e68b9861c3a06959f65ae214980a8 |
| .gfids | 110080 | a06d0d7fe0927294e9ace49900415dd5 |
| .giats | 512 | 56d2c60960487500ae0934573514ade1 |
| .tls | 512 | 1f354d76203061bfdd5a53dae48d5435 |
| .rsrc | 742912 | 995f5361337a70b5feaa4505c659c1d9 |
| .reloc | 172032 | 61928bb8c9ff7f3ec72b724d2ff74c12 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for xfplay.exe