How to remove nir.exe
nir.exe
The module nir.exe has been detected as General Threat
File Details
Product Name: | NirCmd |
Company Name: | NirSoft |
MD5: | bdc4d415d029142ea0630ed989e44ec9 |
Size: | 57 KB |
First Published: | 2017-06-07 12:12:15 (7 years ago) |
Latest Published: | 2018-12-28 02:24:41 (6 years ago) |
Status: | General Threat (on last analysis) | |
Analysis Date: | 2018-12-28 02:24:41 (6 years ago) |
Common Places:
%programfiles%\multi flash kit\files\core2\directgrub\mbty |
%desktop%\totall\utilites\directgrub\mbty |
%sysdrive%\софт\flesh\флеш\files\core2\directgrub |
%programfiles%\multi flash kit\files\core2\directgrub |
%profile%\downloads\directgrub |
%sysdrive%\операционки\xp_sp3_pro_vl_ximage_[nnm-club.me]\usb_xp_ximage\2.directgrub |
%sysdrive%\27.програми\beloff 2013-1\wpi\tools\directgrub.7z |
%sysdrive%\программы\yandexdisk-savehdd1\e\directgrub.zip |
%sysdrive%\программы\винды\directgrub |
%sysdrive%\программы |
Geography:
43.9% | ||
24.4% | ||
17.1% | ||
14.6% |
OS Version:
Windows 7 | 48.8% | |
Windows 10 | 41.5% | |
Windows XP | 7.3% | |
Windows 8.1 | 2.4% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000b7c0 |
PE Sections:
Name | Size of data | MD5 |
.text | 44032 | bc53aeb4ac736792ea859652eb5de726 |
.rdata | 11264 | 870940286e8b508927575a77fb781600 |
.data | 512 | b214e8b09e4f1ffa56fd670932d547aa |
.rsrc | 2048 | a079ea8da1bcadff222f4060f74ce5fe |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nir.exe