How to remove hndserver.exe
- File Details
- Overview
- Analysis
hndserver.exe
The module hndserver.exe has been detected as Trojan.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b438979c91c926bc4759534609fd2290 |
Size: |
14 MB |
First Published: |
2017-09-05 09:08:57 (7 years ago) |
Latest Published: |
2018-08-05 15:07:07 (6 years ago) |
Status: |
Trojan.Downloader (on last analysis) |
|
Analysis Date: |
2018-08-05 15:07:07 (6 years ago) |
Overview
%programfiles%\handycafe\server |
%programfiles%\handycafe |
Windows 10 |
33.3% |
|
Windows 7 |
33.3% |
|
Windows 8.1 |
33.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00748f9c |
Name |
Size of data |
MD5 |
.text |
7533056 |
e63f78d0fe157e19aab3518380d8f4f3 |
.itext |
100352 |
96af0acf0cba62d5c429d89f3a453528 |
.data |
113664 |
2ccbed3b8dc4fb26400141cc2dc91701 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
23552 |
7f8728709ee5e98dd532cab2840034d2 |
.didata |
3072 |
bf24d121fab75109db5d8f5b592f61e8 |
.edata |
512 |
e1e44172e656859f0c01c3a10532df84 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
a42d465384fb43c8aa61a85ee905653f |
.reloc |
622592 |
8dd19a523af90cad2c49399dc58f1bde |
.rsrc |
6474752 |
9429f4f307f0cd0e890098b270e8828e |