How to remove exetools.sys
- File Details
- Overview
- Analysis
exetools.sys
The module exetools.sys has been detected as Trojan.Kryptik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
6588d3501ee7692d3a46899acf2e6ef6 |
Size: |
90 KB |
First Published: |
2019-03-27 16:05:47 (5 years ago) |
Latest Published: |
2021-04-30 20:54:54 (3 years ago) |
Status: |
Trojan.Kryptik (on last analysis) |
|
Analysis Date: |
2021-04-30 20:54:54 (3 years ago) |
Overview
%system% |
%system% |
%system% |
%system% |
%system%\driverstore\filerepository |
%system% |
%sysdrive%\data-brazer\brazer-soft\soft-dizagen\wilcom\new wilcom e2.0t sp3\new wilcom e2.0t sp3\02 hasp emulator |
%system% |
%profile%\downloads\wilcom e2 for windows 10\wilcom e2 for windows 10\4.emul_32bit or 64bit\02 hasp emulator |
%system% |
|
42.9% |
|
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
Windows 10 |
61.1% |
|
Windows 7 |
38.9% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x0001daf8 |
Name |
Size of data |
MD5 |
.text |
0 |
00000000000000000000000000000000 |
.rdata |
0 |
00000000000000000000000000000000 |
.data |
0 |
00000000000000000000000000000000 |
.pdata |
0 |
00000000000000000000000000000000 |
PAGE |
0 |
00000000000000000000000000000000 |
INIT |
0 |
00000000000000000000000000000000 |
.vmp0 |
0 |
00000000000000000000000000000000 |
.vmp1 |
89088 |
eee5e419a71b9c932551c56c998064ef |
.reloc |
512 |
730a2bff50d4172f960ad86b5db38caa |
.rsrc |
1024 |
413509d12103a846799f9d154748307c |