How to remove EwExchangeCmd_21.12_TR_16.trx
- File Details
- Overview
- Analysis
EwExchangeCmd_21.12_TR_16.trx
The module EwExchangeCmd_21.12_TR_16.trx has been detected as Trojan.ExtHeur!
File Details
Product Name: |
|
Company Name: |
|
MD5: |
208374b78d846f0930d0c674b49cf1c0 |
Size: |
4 MB |
First Published: |
2023-12-04 23:06:55 (2 years ago) |
Latest Published: |
2023-12-04 23:06:55 (2 years ago) |
Status: |
Trojan.ExtHeur! (on last analysis) |
|
Analysis Date: |
2023-12-04 23:06:55 (2 years ago) |
%programfiles%\solidworks corp\solidworks electrical |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x001f7c90 |
Name |
Size of data |
MD5 |
.text |
2199552 |
0fb2303154691791b802b15dc38a58d7 |
jkl.text |
199168 |
8932730f38aa836a3fbce64e8250635a |
jkl.bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.rdata |
945152 |
931ce022082966f8b6328c58c70d293d |
.data |
71680 |
505e9e20d477e2dc70c7dd2ce78d6b49 |
.pdata |
93696 |
4308f8a152d8a20b9e6a12a32cb40792 |
jkl.xdat |
20480 |
e01edfcf00cfc6d240addd39783f93e9 |
jkl.pdat |
13824 |
b0362d51ff3dce112e05f698c5bf9063 |
jkl.data |
1024 |
7543222e29427dbd491b196f8f5ad356 |
jkl.rdat |
13824 |
eb0a7d04e32bf088cedda544376039de |
.rsrc |
919552 |
068ec595a40ad3a83e0d1298aeb909f7 |
.reloc |
34816 |
646b0d55a6336665fa4a15c389266f1e |