How to remove 079.vir
079.vir
The module 079.vir has been detected as Trojan.Injector
File Details
Product Name: | Borland Image Editor |
Company Name: | Inprise Corporation |
MD5: | ef5cefc07a397e3392854063c512131e |
Size: | 716 KB |
First Published: | 2018-04-26 21:18:18 (6 years ago) |
Latest Published: | 2018-04-26 21:18:18 (6 years ago) |
Status: | Trojan.Injector (on last analysis) | |
Analysis Date: | 2018-04-26 21:18:18 (6 years ago) |
Common Places:
%desktop%\600个电脑病毒包\精睿样本 |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0007f170 |
PE Sections:
Name | Size of data | MD5 |
CODE | 516608 | 5530a8fbe457b02fccfa1e1e91cd3a84 |
DATA | 40448 | d7c8082bfa1e8182637f9479876a1130 |
BSS | 0 | 00000000000000000000000000000000 |
.idata | 9728 | f10320644b411b42552c2f85032f1e04 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | e5a86d21896420a95590ffe7bff9b959 |
.reloc | 37888 | 656d9b5747258ae7a291d3e57fa29071 |
.rsrc | 127488 | 35943236275bc9403b8f0c289b3ec0d9 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 079.vir