How to remove WinNtBackend-1056909485667395.tmp.exe

WinNtBackend-1056909485667395.tmp.exe

The module WinNtBackend-1056909485667395.tmp.exe has been detected as Trojan.AEP

WinNtBackend-1056909485667395.tmp.exe
Product Name:

ARMsvc

MD5: 13fc329545aecf3fabdae213832ad09c
Size: 49 KB
First Published: 2017-12-28 10:14:48 (6 years ago)
Latest Published: 2018-01-22 09:13:12 (6 years ago)
Status: Trojan.AEP (on last analysis)
Analysis Date: 2018-01-22 09:13:12 (6 years ago)
%temp%
%localappdata%\microsoft\windows\inetcache\ie
39C0.tmp.exe
WinNtBackend-1056909485667395.tmp.exe
Ell[1].exe
WinNtBackend-56125205410161.tmp.exe
WinNtBackend-451286520138287.tmp.exe
winntbackend-1002937542134245.tmp.exe
winntbackend-9518312321477.tmp.exe
WinNtBackend-6555178038329791.tmp.exe
28.6%
28.6%
14.3%
14.3%
14.3%
Windows 10 42.9%
Windows 8.1 42.9%
Windows 7 14.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0000d89e

.NET Info:

MVID: 77a92b9a-5add-4a78-a293-354b76163aa7
Typelib ID: 6c748bd1-7967-470a-a0f9-d97429a03c9f

PE Sections:

Name Size of data MD5
.text 47616 357d0e950c837fcd7d0060476d32eb5c
.rsrc 1536 ccd64ed51b52ab97c5981aa3203c8de1
.reloc 512 17acbfaf4a563f1c238819a61b0d67b2

More information:

Download GridinSoft Anti-Malware - Removal tool for WinNtBackend-1056909485667395.tmp.exe