How to remove backwindow32.exe
- File Details
- Overview
- Analysis
backwindow32.exe
The module backwindow32.exe has been detected as Trojan.Kryptik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
83f354b01b4a2eeab0a1236dd490f627 |
Size: |
172 KB |
First Published: |
2017-09-06 23:09:36 (7 years ago) |
Latest Published: |
2017-09-07 02:10:37 (7 years ago) |
Status: |
Trojan.Kryptik (on last analysis) |
|
Analysis Date: |
2017-09-07 02:10:37 (7 years ago) |
%sysdrive%\recycler\s-1-5-21-0243556031-888888379-781862338-196818750 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000a5f2 |
Name |
Size of data |
MD5 |
.text |
90112 |
cd686ff2e26949fcebb766cf5575dbf3 |
.rdata |
16384 |
b2752c344aed7ed4709f8cf97deec22b |
.data |
8192 |
904c9ecc8b19c7e1bf7b61673b137ac9 |
.tls |
45056 |
a74cac02ffdf411db6f731b0635ac7bb |
.rsrc |
12288 |
c106d38efda02aef5bde45d4673599d9 |