How to remove dckuybanmlgp.exe
- File Details
- Overview
- Analysis
dckuybanmlgp.exe
The module dckuybanmlgp.exe has been detected as Trojan.Downloader
File Details
MD5: |
b091c4848287be6601d720997394d453 |
Size: |
10 MB |
First Published: |
2024-03-25 23:01:55 (a month ago) |
Latest Published: |
2024-05-05 23:02:04 (a day ago) |
Status: |
Trojan.Downloader (on last analysis) |
|
Analysis Date: |
2024-05-05 23:02:04 (a day ago) |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%sysdrive%\windows.old\users\lenovo\appdata\local\microsoft\windows\inetcache\ie |
%mydoc% |
%commonappdata% |
%commonappdata% |
|
14.3% |
|
|
9.1% |
|
|
9.1% |
|
|
7.8% |
|
|
6.5% |
|
|
6.5% |
|
|
5.2% |
|
|
5.2% |
|
|
3.9% |
|
|
3.9% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
Windows 10 |
82.9% |
|
Windows 7 |
15.8% |
|
Windows 8.1 |
1.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0101fc79 |
Name |
Size of data |
MD5 |
.text |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.rdata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.data |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.pdata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.00cfg |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.text0 |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.text1 |
2560 |
8c8166803fcd2dea6e1ac95cac547664 |
.text2 |
11199488 |
e8e3e1ebcf01f0ab4d389f431ea91a78 |
.rsrc |
11776 |
16dcddb4acede2aca90e97593b94495a |