How to remove nc64.exe
nc64.exe
The module nc64.exe has been detected as Risk.RemoteAdmin
File Details
MD5: | 6371074f64220a57ee2c4e934335db0e |
Size: | 43 KB |
First Published: | 2017-10-16 10:01:00 (7 years ago) |
Latest Published: | 2023-02-13 23:40:24 (2 years ago) |
Status: | Risk.RemoteAdmin (on last analysis) | |
Analysis Date: | 2023-02-13 23:40:24 (2 years ago) |
Overview
Signed By: | Pixologic Inc. |
Status: | Valid |
Common Places:
%profile%\pixologic\gozapps\maya\netcat |
%profile%\pixologic\gozapps\maya |
%sysdrive%\windows.old\users\public\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
%profile%\pixologic\gozapps\maya |
Geography:
9.6% | ||
8.4% | ||
7.2% | ||
6.0% | ||
6.0% | ||
6.0% | ||
6.0% | ||
3.6% | ||
3.6% | ||
3.6% | ||
3.6% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% | ||
1.2% |
OS Version:
Windows 10 | 92.9% | |
Windows 7 | 7.1% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000000400000 |
Entry Address: | 0x00001710 |
PE Sections:
Name | Size of data | MD5 |
.text | 26112 | e2b1cd470ac63d157e4c65e232c07adf |
.data | 512 | c5407141c3fdbdff8172a329e9384d18 |
.rdata | 5120 | 57e82d7c7851e8632411901e03ba61be |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4608 | d2a0f7d3008f5d537376c1a482dcb11e |
.CRT | 512 | 58729826accb6b45d872788e51ad82c7 |
.tls | 512 | 87bd9ed859278120552d9cd12f0ab113 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nc64.exe