How to remove ykdldptmzd.tmp
- File Details
- Overview
- Analysis
ykdldptmzd.tmp
The module ykdldptmzd.tmp has been detected as Trojan.LoadMoney
File Details
MD5: |
10bdfe13ad433c5415392e927a34714d |
Size: |
1 MB |
First Published: |
2017-06-12 14:07:22 (7 years ago) |
Latest Published: |
2021-07-15 20:39:04 (3 years ago) |
Status: |
Trojan.LoadMoney (on last analysis) |
|
Analysis Date: |
2021-07-15 20:39:04 (3 years ago) |
Overview
%windir%\microsoft |
%windir%\temp |
%windir% |
%windir% |
svchost.exe.exe |
ykdldptmzd.tmp |
|
26.1% |
|
|
26.1% |
|
|
10.9% |
|
|
8.7% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
Windows 10 |
56.5% |
|
Windows 7 |
39.1% |
|
Windows 8.1 |
4.3% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x00001500 |
Name |
Size of data |
MD5 |
.text |
1066496 |
e7124eff05970b78b9b7ec312ed9c3cf |
.data |
5120 |
e41697576226d76b195cbd89d987933e |
.rdata |
254976 |
8a6886db373061e86effdbe88208416e |
.pdata |
13312 |
c973db857d0f1f731bc42079ec6daab5 |
.xdata |
14336 |
ce799980f18823e8c2cd273a12e9ac26 |
.bss |
0 |
00000000000000000000000000000000 |
.edata |
512 |
b5740ad07d4488113412a407bfc8ace8 |
.idata |
8704 |
e2df8eec26f883aea7dd7ea3b9cbe209 |
.CRT |
512 |
05b8cdc95b702c97338ef0fec7579ca6 |
.tls |
512 |
8b73d7936999bafd3a89c04b0a7b196e |
.reloc |
1536 |
2117ea6a93a41775e25a828b0e102ed7 |