How to remove JHnoLTymPb.exe
- File Details
- Overview
- Analysis
JHnoLTymPb.exe
The module JHnoLTymPb.exe has been detected as Rootkit.Gen
File Details
MD5: |
761be00f88412b05acda15ff8c0f066f |
Size: |
1 MB |
First Published: |
2021-01-13 18:07:06 (4 years ago) |
Latest Published: |
2021-01-15 08:05:55 (4 years ago) |
Status: |
Rootkit.Gen (on last analysis) |
|
Analysis Date: |
2021-01-15 08:05:55 (4 years ago) |
Overview
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
India |
36.4% |
|
Argentina |
27.3% |
|
Iran |
18.2% |
|
Poland |
18.2% |
|
Windows 10 |
63.6% |
|
Windows 7 |
27.3% |
|
Windows 8.1 |
9.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000bf55e |
MVID: |
2f74b316-2e41-4ca4-9ab1-c0188dc5f8f7 |
Typelib ID: |
f0d95df0-ba45-4483-9b63-35c59a383421 |
Name |
Size of data |
MD5 |
.text |
775680 |
c9dbf7ec02b4c5a68b1c502ca02d2fea |
.rsrc |
625152 |
ce6dcfec40936b528b22cbe2c87093e4 |
.reloc |
512 |
94067db2363ca502bf943ca6665f3a00 |