How to remove hwp.exe
hwp.exe
The module hwp.exe has been detected as Trojan.Injector
File Details
Company Name: | Borland Software Corp. |
MD5: | e4024d06416d790e80cb5e552ddab73e |
Size: | 1 MB |
First Published: | 2018-02-01 19:05:35 (7 years ago) |
Latest Published: | 2018-10-05 15:11:51 (6 years ago) |
Status: | Trojan.Injector (on last analysis) | |
Analysis Date: | 2018-10-05 15:11:51 (6 years ago) |
Common Places:
%sysdrive%\torrent-down |
%sysdrive% |
%sysdrive%\다운로드 |
%sysdrive%\$recycle.bin\s-1-5-21-861885156-320692252-2381751173-1001 |
%sysdrive%\$recycle.bin\s-1-5-21-1505076850-2617453615-3847566844-1001 |
File Names:
HWP2017.exe |
hwp.exe |
Geography:
100.0% |
OS Version:
Windows 7 | 71.4% | |
Windows 10 | 28.6% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0005fdf8 |
PE Sections:
Name | Size of data | MD5 |
CODE | 389120 | 17dede9211235cbddb23d7cb0c4aafcf |
DATA | 31232 | 44f202d68b3896de2284e7da748ad262 |
BSS | 0 | 00000000000000000000000000000000 |
.idata | 8704 | 2c9a68ca42974ceacc1d45b0ef85098c |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 055c7ba390d0349ba1b19416b1111551 |
.reloc | 29184 | 95c03ae155245d24cfb221569c7ca1f2 |
.rsrc | 963584 | 698158ea3b73a7d6d5beb6b1b06c6d4d |
More information:
Download GridinSoft
Anti-Malware - Removal tool for hwp.exe