How to remove dBrKMMJZNlZO.exe
- File Details
- Overview
- Analysis
dBrKMMJZNlZO.exe
The module dBrKMMJZNlZO.exe has been detected as Trojan.Kryptik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
64e3b3398601f5adaca4c112ea32884c |
Size: |
1 MB |
First Published: |
2017-07-22 19:08:49 (7 years ago) |
Latest Published: |
2017-07-23 08:05:39 (7 years ago) |
Status: |
Trojan.Kryptik (on last analysis) |
|
Analysis Date: |
2017-07-23 08:05:39 (7 years ago) |
Overview
Signed By: |
GROK |
Status: |
Valid |
%localappdata%\temp |
%appdata%\microsoft |
hQ118PCdUnce.exe |
ua0l95r6SCPV.exe |
msi.exe |
q0mAXh12Oqbb.exe |
MvnOgzNG0w2G.exe |
KBpo8uXpilbg.exe |
2yuCC5s3bN4B.exe |
q0uFc4TRUwtp.exe |
yCSvcCi7uJ5c.exe |
QUujqgwgsci2.exe |
uv8rvqWqgEut.exe |
Wx02sECRYbtv.exe |
mEfRMrXEwJts.exe |
QGCNs0ybnQjA.exe |
yOxYlCmLmOl9.exe |
IqhhTVlmjWME.exe |
2rEx2nqr2JGo.exe |
QcXZf5TV07XU.exe |
Qmwe83jEVI2X.exe |
gGCDYPK2RKL9.exe |
ZxE8TSOdfqij.exe |
wwCzeXhHjFdh.exe |
voKlK9Kvtdyw.exe |
gHsdixfiAfTQ.exe |
hY5xvtQKIsy9.exe |
lOsn477jMCQt.exe |
Shh9crdqCpCP.exe |
jASYBGgriyTu.exe |
6FquEIuzVMqw.exe |
4rRbVIRTGcWK.exe |
YRxlni1lPBSv.exe |
NOPaKUVAEa7n.exe |
aBJq2C3vwSpm.exe |
cfs9jELXeV8k.exe |
GqWM22AI4SHA.exe |
VDakKFlXMvam.exe |
HnHjVR3janR1.exe |
dBrKMMJZNlZO.exe |
Windows 8.1 |
92.5% |
|
Windows 10 |
7.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00032780 |
Name |
Size of data |
MD5 |
.text |
230400 |
9123033ab575727b5bb8ed49c940a4dd |
.rdata |
355840 |
7cb66a7f5f9d6c867c60335b4bd482e8 |
.data |
386560 |
d1dd8f04cbee431c694ab7020900ddab |
.4HpP |
266752 |
6c080636eb37e3057285f8fee3bae318 |
.Hao1 |
348160 |
b54a8e2dc630fe81be11b6b3c28e6e27 |
.rsrc |
17920 |
4313731bb59bfc67a064ab982dd031c4 |
.reloc |
7168 |
387512dfc1b002596cf14d738b8e4215 |