How to remove 6672.tmp.exe

6672.tmp.exe

The module 6672.tmp.exe has been detected as Trojan.Kryptik

6672.tmp.exe
Product Name:

Ranging

Company Name:

VSO-Software SARL

MD5: 283006112628c1012a7a47929d385272
Size: 579 KB
First Published: 2019-08-30 11:06:49 (5 years ago)
Latest Published: 2019-10-04 16:36:01 (5 years ago)
Status: Trojan.Kryptik (on last analysis)
Analysis Date: 2019-10-04 16:36:01 (5 years ago)
Signed By: JimEth LTD
Status: Valid
%temp%
%temp%
%temp%
%sysdrive%\$recycle.bin
%temp%
20.0%
20.0%
20.0%
20.0%
20.0%
Windows 7 60.0%
Windows 10 40.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00004c9d

PE Sections:

Name Size of data MD5
.text 156160 9ad532a16100364f2da4a0e495fdebbc
.rdata 181248 e0fb85a252575de8f8c68df6fbf8b86e
.data 10752 13f62c7153d0ba671f88406ea8e0239a
.gfids 512 b1c69a554cd707fb205d0ee2e339a9a5
.rsrc 234496 8c60ae91a5f2657224a1640666efa520

More information:

Download GridinSoft Anti-Malware - Removal tool for 6672.tmp.exe