How to remove nircmd.exe
nircmd.exe
The module nircmd.exe has been detected as General Threat
File Details
Product Name: | NirCmd |
Company Name: | NirSoft |
MD5: | ab0bd2e0944b1e64c86933f1621317d3 |
Size: | 41 KB |
First Published: | 2017-05-22 11:23:27 (7 years ago) |
Latest Published: | 2018-10-29 12:10:35 (6 years ago) |
Status: | General Threat (on last analysis) | |
Analysis Date: | 2018-10-29 12:10:35 (6 years ago) |
Common Places:
%desktop%\lock\001 a my tools\nir soft\nirsoft |
%desktop%\lock\nir soft\nirsoft |
%localappdata% |
%programfiles%\nirsoft |
%programfiles%\nirlauncher portable |
%sysdrive%\compustar server backup 10-31-17\compustar\compustar tools\shop utilities\nirsoft launcher |
%sysdrive%\compustar server backup 10-31-17\compustar\compustar tools\old tools\tools and apps\nirlauncher |
%programfiles%\systemprogs |
Geography:
37.5% | ||
25.0% | ||
12.5% | ||
12.5% | ||
12.5% |
OS Version:
Windows 7 | 75.0% | |
Windows 8 | 12.5% | |
Windows 10 | 12.5% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00018820 |
PE Sections:
Name | Size of data | MD5 |
UPX0 | 0 | 00000000000000000000000000000000 |
UPX1 | 39424 | 2b733cafe46465ccb1c2dff0de1083b3 |
.rsrc | 2048 | e4f0d0f19e5b94a013748b4d6e699ab2 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nircmd.exe