How to remove mimikatz.exe
- File Details
- Overview
- Analysis
mimikatz.exe
The module mimikatz.exe has been detected as Risk.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a9a5bf373e0b1725eb04fd7b678a48ee |
Size: |
566 KB |
First Published: |
2017-08-23 21:02:09 (7 years ago) |
Latest Published: |
2019-04-03 03:21:37 (5 years ago) |
Status: |
Risk.Gen (on last analysis) |
|
Analysis Date: |
2019-04-03 03:21:37 (5 years ago) |
%sysdrive%\$recycle.bin\s-1-5-21-923387806-1162179383-3497547901-1001\$rmkyg2c\mimikatz\win32 |
%sysdrive%\$recycle.bin\s-1-5-21-923387806-1162179383-3497547901-1001\$r7nbfrl\win32 |
%sysdrive%\$recycle.bin\s-1-5-21-3443296143-1233048319-3966420318-1001\$r26fuvj |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00050822 |
Name |
Size of data |
MD5 |
.text |
351744 |
9bb0451a601d1729c993ae9bf8441f91 |
.rdata |
180736 |
86fdecbfda6bd7f52478b83c3a7212ee |
.data |
11264 |
d691600e115f739fcd8065be6a0dcfce |
.rsrc |
16384 |
4c9b519347f98e2dece324109d6461c1 |
.reloc |
18432 |
44b37a55123a15a0fefb9fdd80ccc112 |