How to remove mimikatz.exe
- File Details
- Overview
- Analysis
mimikatz.exe
The module mimikatz.exe has been detected as Hack.Mimikatz
File Details
Product Name: |
|
Company Name: |
|
MD5: |
80f421c5fd5b28fc05b485de4f7896a1 |
Size: |
990 KB |
First Published: |
2019-10-29 00:24:09 (5 years ago) |
Latest Published: |
2020-07-15 15:26:09 (4 years ago) |
Status: |
Hack.Mimikatz (on last analysis) |
|
Analysis Date: |
2020-07-15 15:26:09 (4 years ago) |
Overview
%desktop%\cs\c\mimi |
%desktop%\automim\automim\automim\mimikatz |
%desktop%\automim.zip\automim\automim\mimikatz |
Windows Server 2008 R2 |
66.7% |
|
Windows Server 2012 R2 |
33.3% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000907f8 |
Name |
Size of data |
MD5 |
.text |
615936 |
22f15203d5f587c30c730fa168bd8e18 |
.rdata |
316416 |
f019edafb555482bc01eec6b8ddd9e1b |
.data |
25600 |
9c3459dd57c2f998dad465b5659e2b62 |
.pdata |
19968 |
ea70b69dab1c4b31d69de4c964e1b764 |
.rsrc |
16384 |
7db623e703531ac572f609d97190b6ac |
.reloc |
7168 |
9cccc66a730fd668569e805f9fa32b85 |