How to remove xfplay.exe
xfplay.exe
The module xfplay.exe has been detected as Trojan.Startpage
File Details
Product Name: | 影音先锋 9.6.0 P2P 云3D版 |
Company Name: | 零与壹软件 |
MD5: | 0b7a6c3d1d1a592669794024c6640809 |
Size: | 16 MB |
First Published: | 2017-05-27 10:07:14 (7 years ago) |
Latest Published: | 2019-08-10 14:25:37 (5 years ago) |
Status: | Trojan.Startpage (on last analysis) | |
Analysis Date: | 2019-08-10 14:25:37 (5 years ago) |
Overview
Signed By: | 临桂零与壹软件有限公司 |
Status: | Valid |
Common Places:
%profile%\downloads |
%profile% |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
%sysdrive%\0光碟燒錄資料 |
File Names:
xfplay9.60.exe |
xfplay9.60(1).exe |
xfplay.exe |
Geography:
100.0% |
OS Version:
Windows 7 | 87.5% | |
Windows 10 | 12.5% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00016478 |
PE Sections:
Name | Size of data | MD5 |
.text | 82944 | 824e3957006b0613ed9c53ada45c1db3 |
.itext | 3072 | a1e7b318e1115c7a9aaa4dee97b67e4b |
.data | 3584 | 92f43d0b99e4a0f84c5c4e73441a80d1 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4096 | b47eaca4c149ee829de76a342b5560d5 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 3746f5876803f8f30db5bb2deb8772ae |
.rsrc | 114688 | f08e838d3cb1e54740882b5d8eaee95b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for xfplay.exe