How to remove nircmd.exe
nircmd.exe
The module nircmd.exe has been detected as Risk.Gen
File Details
Product Name: | NirCmd |
Company Name: | NirSoft |
MD5: | ffe303d2e229bebb30c1fce66d3291e7 |
Size: | 64 KB |
First Published: | 2017-10-13 17:07:20 (7 years ago) |
Latest Published: | 2017-11-27 14:07:41 (7 years ago) |
Status: | Risk.Gen (on last analysis) | |
Analysis Date: | 2017-11-27 14:07:41 (7 years ago) |
Common Places:
%profile%\downloads\logs\_getintopc.com_hbcd-15.2-restored-v1.1-dvd-proteus\hbcd\programs\files\notepad2.7z |
Geography:
40.0% | ||
20.0% | ||
20.0% | ||
20.0% |
OS Version:
Windows 7 | 60.0% | |
Windows 10 | 40.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000cbf8 |
PE Sections:
Name | Size of data | MD5 |
.text | 49152 | d20c04f5da7ec9d212e1d3d6d498f4fe |
.rdata | 12800 | 7c3f0ceef9cba1dfd2ee1452cbf6b7c0 |
.data | 512 | 6cf975243e06f24ed5045dab6a5f8d82 |
.rsrc | 2560 | 1714030a5cad36f0cbac4ac9f3da795b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nircmd.exe