How to remove grserv31.exe
- File Details
- Overview
- Analysis
grserv31.exe
The module grserv31.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b93b85a46c38c2ca827df7a643dbd4db |
Size: |
4 MB |
First Published: |
2018-05-12 05:09:14 (6 years ago) |
Latest Published: |
2020-04-20 17:36:17 (4 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2020-04-20 17:36:17 (4 years ago) |
Overview
%sysdrive%\pro\برامج لأى جهاز\remote admin |
%sysdrive%\gerekli proğramlar\programlar\sistem araçları\uzak masaüstü |
%sysdrive%\$recycle.bin\s-1-5-21-2998061997-1183609662-3937718215-1001 |
%sysdrive%\florida pic vid\dcim\from sd card backup\acsbackup\documents |
%sysdrive%\$recycle.bin\s-1-5-21-2998061997-1183609662-3937718215-1001 |
Windows 10 |
60.0% |
|
Windows 7 |
40.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00028171 |
Name |
Size of data |
MD5 |
.text |
208896 |
dca6da03e6de677cd1c75a9da1af1bc5 |
.rdata |
28672 |
270d4b2f1bef56eefff3525785bc29ce |
.data |
24576 |
6987a72b5d4e2c322dc3a56fd08b5737 |
.rsrc |
45056 |
7050a5c5b1bf8eb11a1d203d32f7b04b |