How to remove ProcExp.exe
- File Details
- Overview
- Analysis
ProcExp.exe
The module ProcExp.exe has been detected as Trojan.Kryptik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d5860fb84d50a41b24f489e3e1e81290 |
Size: |
738 KB |
First Published: |
2018-01-11 13:09:14 (7 years ago) |
Latest Published: |
2018-03-02 14:07:15 (6 years ago) |
Status: |
Trojan.Kryptik (on last analysis) |
|
Analysis Date: |
2018-03-02 14:07:15 (6 years ago) |
%profile%\downloads\hirens.bootcd.15.2\hiren's.bootcd.15.2\hbcd |
%sysdrive%\dossierprivé\hirens.bootcd.15.2\hiren's.bootcd.15.2\hbcd |
%profile%\downloads\rsload.net.hirens.bootcd.15.2.lexapass\hbcd |
%desktop%\hbcd\multiboot\hbcd |
%desktop%\utilities |
%desktop%\usb reanimator 12.2014 rus\usb reanimator 2014 rus\hbcd |
%sysdrive%\mybootcd\cd\hbcd |
%desktop%\stuff\software\cracking essentials(hiren boot)\hbcd |
%desktop%\cd\hbcd |
%sysdrive%\флешка\hbcd |
|
19.0% |
|
|
19.0% |
|
|
14.3% |
|
|
14.3% |
|
|
9.5% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
Windows 7 |
61.9% |
|
Windows 10 |
38.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x002c3150 |
Name |
Size of data |
MD5 |
UPX0 |
0 |
00000000000000000000000000000000 |
UPX1 |
712192 |
16810b1db807726608105751afe7da20 |
.rsrc |
35840 |
39d7a187732ba23ded7e51275712a9e5 |