How to remove PDFXCview.exe
- File Details
- Overview
- Analysis
PDFXCview.exe
The module PDFXCview.exe has been detected as Trojan.Heur!
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
4f6f67bd10bbfe926116736586bdc8d3 |
| Size: |
9 MB |
| First Published: |
2023-04-24 23:02:42 (2 years ago) |
| Latest Published: |
2023-04-24 23:15:07 (2 years ago) |
| Status: |
Trojan.Heur! (on last analysis) |
|
| Analysis Date: |
2023-04-24 23:15:07 (2 years ago) |
Overview
| %mydoc%\leonard\j\office documents\--- office documents --- |
| %sysdrive%\desktop\junk 13\new folder\$archive of deleted items (bvckup) (2020-02-17, 14-40-19)\$archive (bvckup 2)\old backup\old files 061718 (deleted on 2018-09-20 at 07-09-09)\000 (deleted on 2018-06-19 at 06-29-19)\11111\downloads |
| %sysdrive%\desktop\junk 13\new folder\$archive of deleted items (bvckup) (2020-02-17, 14-40-19)\$archive (bvckup 2)\old backup\00office documents (deleted on 2018-09-20 at 07-09-09)\--- office documents --- |
| %mydoc%\leonard\j\junk13\leo1 |
| %mydoc%\leonard\j\00office documents\--- office documents --- |
| %mydoc%\leonard\j\000\11111\downloads\all |
| %mydoc%\leonard\j\old back |
| %mydoc%\leonard\j |
| %mydoc%\leonard\j\000\11111\downloads |
| %mydoc%\leonard\j\junk\leo1 |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0063c08a |
| Name |
Size of data |
MD5 |
| .text |
7113216 |
0535194add0184ce9f85563bb37e529a |
| .rdata |
1041920 |
87d10522946caa1cc08404c36a7efdca |
| .data |
236032 |
98b08edbcd7ec0b315ce5d523ec40529 |
| .resStr |
9216 |
9bf9159d3da870b6ea5b25b2dcc3cfdf |
| .resCmd |
46080 |
47883e125d17abbdc043330af5104aff |
| .rsrc |
1099776 |
9be71e121871052d74ce110f394c715b |