How to remove yVeBEaFfbJxrBaBLNrxG.exe
- File Details
- Overview
- Analysis
yVeBEaFfbJxrBaBLNrxG.exe
The module yVeBEaFfbJxrBaBLNrxG.exe has been detected as Trojan.Agent
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
6ee7ddebff0a2b78c7ac30f6e00d1d11 |
| Size: |
872 KB |
| First Published: |
2018-06-20 14:09:19 (7 years ago) |
| Latest Published: |
2024-05-02 23:01:52 (2 years ago) |
| Status: |
Trojan.Agent (on last analysis) |
|
| Analysis Date: |
2024-05-02 23:01:52 (2 years ago) |
Overview
| %sysdrive%\iqviprftqghmkvh |
| %sysdrive%\hqqngvtwuwvwubldlnawlysfvpmtyl |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| NcggoCsaAF.exe |
| yVeBEaFfbJxrBaBLNrxG.exe |
|
22.2% |
|
|
11.1% |
|
|
11.1% |
|
|
11.1% |
|
|
11.1% |
|
|
11.1% |
|
|
11.1% |
|
|
11.1% |
|
| Windows 10 |
77.8% |
|
| Windows 7 |
22.2% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00027ffa |
| Name |
Size of data |
MD5 |
| .text |
583680 |
37545704cd94410041e41f7b2d95d901 |
| .rdata |
196096 |
72f1397469faf1bac3800860dfc32cb9 |
| .data |
20992 |
dcfc007fd1d97a1a6dc1794856b6d56b |
| .rsrc |
55296 |
50a7b2c94f15b1ba7e4678c3257ef49b |
| .reloc |
29184 |
2e5c2ba66d7b9d101e50bc3e18d0b2a5 |