How to remove exetools.sys
- File Details
- Overview
- Analysis
exetools.sys
The module exetools.sys has been detected as Trojan.Kryptik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
6588d3501ee7692d3a46899acf2e6ef6 |
| Size: |
90 KB |
| First Published: |
2019-03-27 16:05:47 (6 years ago) |
| Latest Published: |
2021-04-30 20:54:54 (4 years ago) |
| Status: |
Trojan.Kryptik (on last analysis) |
|
| Analysis Date: |
2021-04-30 20:54:54 (4 years ago) |
Overview
| %system% |
| %system% |
| %system% |
| %system% |
| %system%\driverstore\filerepository |
| %system% |
| %sysdrive%\data-brazer\brazer-soft\soft-dizagen\wilcom\new wilcom e2.0t sp3\new wilcom e2.0t sp3\02 hasp emulator |
| %system% |
| %profile%\downloads\wilcom e2 for windows 10\wilcom e2 for windows 10\4.emul_32bit or 64bit\02 hasp emulator |
| %system% |
|
42.9% |
|
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
| Windows 10 |
61.1% |
|
| Windows 7 |
38.9% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000000010000 |
| Entry Address: |
0x0001daf8 |
| Name |
Size of data |
MD5 |
| .text |
0 |
00000000000000000000000000000000 |
| .rdata |
0 |
00000000000000000000000000000000 |
| .data |
0 |
00000000000000000000000000000000 |
| .pdata |
0 |
00000000000000000000000000000000 |
| PAGE |
0 |
00000000000000000000000000000000 |
| INIT |
0 |
00000000000000000000000000000000 |
| .vmp0 |
0 |
00000000000000000000000000000000 |
| .vmp1 |
89088 |
eee5e419a71b9c932551c56c998064ef |
| .reloc |
512 |
730a2bff50d4172f960ad86b5db38caa |
| .rsrc |
1024 |
413509d12103a846799f9d154748307c |