How to remove mimikatz.exe
- File Details
- Overview
- Analysis
mimikatz.exe
The module mimikatz.exe has been detected as Hack.Mimikatz
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5410539e34fb934133d6c689072ba49d |
Size: |
902 KB |
First Published: |
2019-10-08 03:09:46 (5 years ago) |
Latest Published: |
2020-05-29 12:19:34 (4 years ago) |
Status: |
Hack.Mimikatz (on last analysis) |
|
Analysis Date: |
2020-05-29 12:19:34 (4 years ago) |
Overview
%profile%\dministrator\my documents\downloads\wor\mimikatz\mimikatz |
%sysdrive%\wmpub\1\mimikatz\mimikatz |
%desktop%\mimik\mimikatz |
%desktop%\tools\extract\mimikatz |
Windows Server 2003 |
50.0% |
|
Windows Server 2012 R2 |
25.0% |
|
Windows 7 |
25.0% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000801fc |
Name |
Size of data |
MD5 |
.text |
548864 |
c173b5a7e6a72091762934a43b4c7068 |
.rdata |
300544 |
63b6a2a43c1786a50dd5bdf013da36e4 |
.data |
20992 |
3ce74172eaaf5215c10eaebb0bf69189 |
.pdata |
17920 |
0ea8f6b1e8fc9f4da1fd251488d8d099 |
.rsrc |
16384 |
73e631756e17874738ab224a539c3fe6 |
.reloc |
6656 |
fef4a5bb76b169040b525d5204f151d8 |