How to remove F197.exe
F197.exe
The module F197.exe has been detected as Trojan.LokiBot
File Details
| Product Name: | Video Chat |
| Company Name: | Solarwinds MSP |
| MD5: | a4145abcfc905e0832b06f7bd868e388 |
| Size: | 641 KB |
| First Published: | 2023-06-18 23:19:48 (2 years ago) |
| Latest Published: | 2023-06-18 23:37:15 (2 years ago) |
| Status: | Trojan.LokiBot (on last analysis) | |
| Analysis Date: | 2023-06-18 23:37:15 (2 years ago) |
Overview
| Signed By: | Bosch SPV2HKX41E Ultra compact |
| Status: | Valid |
Common Places:
| %temp% |
| %temp% |
| %temp% |
Geography:
| Iraq | 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0007c22e |
.NET Info:
| MVID: | cbde82d6-6a89-41e8-aec2-952c0dcebf7e |
| Typelib ID: | d9d1cc42-81e8-40ae-9753-ed9287c1422d |
PE Sections:
| Name | Size of data | MD5 |
| .text | 500736 | 76348663b5d8d8ea4ef8ac0e1ea2659b |
| .sdata | 512 | 74d382e0cd399994791464437644fe36 |
| .rsrc | 147968 | 9788f4aa82726e8bca1c7f1e7be9815a |
| .reloc | 512 | 65ca8f569ba10bf60688741d9f989632 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for F197.exe