How to remove xfplay.exe
xfplay.exe
The module xfplay.exe has been detected as Trojan.Agent

File Details
Product Name: | xfplay |
Company Name: | ????? |
MD5: | b6d14bb939b8385f073bf42d33fb74d8 |
Size: | 3 MB |
First Published: | 2020-06-03 03:39:12 (4 years ago) |
Latest Published: | 2021-01-13 22:26:43 (4 years ago) |
Status: | Trojan.Agent (on last analysis) | |
Analysis Date: | 2021-01-13 22:26:43 (4 years ago) |
Overview
Signed By: | ??????????? |
Status: | Valid |
Common Places:
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%sysdrive% |
%sysdrive% |
%sysdrive%\xfmovie |
%sysdrive% |
%sysdrive% |
Geography:
87.2% | ||
12.8% |
OS Version:
Windows 10 | 79.6% | |
Windows 7 | 12.2% | |
Windows 8 | 4.1% | |
Windows 8.1 | 4.1% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x001c6962 |
PE Sections:
Name | Size of data | MD5 |
.text | 2134016 | 1c8364d857d9a29f0a53a8be56da1952 |
.rdata | 476672 | 7c04ac352f2e7b9c11698cdc8d2b1170 |
.data | 24576 | 251e68b9861c3a06959f65ae214980a8 |
.gfids | 110080 | a06d0d7fe0927294e9ace49900415dd5 |
.giats | 512 | 56d2c60960487500ae0934573514ade1 |
.tls | 512 | 1f354d76203061bfdd5a53dae48d5435 |
.rsrc | 742912 | 995f5361337a70b5feaa4505c659c1d9 |
.reloc | 172032 | 61928bb8c9ff7f3ec72b724d2ff74c12 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for xfplay.exe
