How to remove JHnoLTymPb.exe
- File Details
- Overview
- Analysis
JHnoLTymPb.exe
The module JHnoLTymPb.exe has been detected as Rootkit.Gen
File Details
| MD5: |
761be00f88412b05acda15ff8c0f066f |
| Size: |
1 MB |
| First Published: |
2021-01-13 18:07:06 (4 years ago) |
| Latest Published: |
2021-01-15 08:05:55 (4 years ago) |
| Status: |
Rootkit.Gen (on last analysis) |
|
| Analysis Date: |
2021-01-15 08:05:55 (4 years ago) |
Overview
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| Windows 10 |
63.6% |
|
| Windows 7 |
27.3% |
|
| Windows 8.1 |
9.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000bf55e |
| MVID: |
2f74b316-2e41-4ca4-9ab1-c0188dc5f8f7 |
| Typelib ID: |
f0d95df0-ba45-4483-9b63-35c59a383421 |
| Name |
Size of data |
MD5 |
| .text |
775680 |
c9dbf7ec02b4c5a68b1c502ca02d2fea |
| .rsrc |
625152 |
ce6dcfec40936b528b22cbe2c87093e4 |
| .reloc |
512 |
94067db2363ca502bf943ca6665f3a00 |