How to remove njRat Arabic.exe
- File Details
- Overview
- Analysis
njRat Arabic.exe
The module njRat Arabic.exe has been detected as Backdoor.Bladabindi
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d193b2c35b908ed67d811ea6aee4bfa6 |
Size: |
910 KB |
First Published: |
2018-01-09 14:03:32 (6 years ago) |
Latest Published: |
2018-01-09 14:03:34 (6 years ago) |
Status: |
Backdoor.Bladabindi (on last analysis) |
|
Analysis Date: |
2018-01-09 14:03:34 (6 years ago) |
%temp%\rar$exa0.089 |
%temp%\rar$exa0.572 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000dce22 |
MVID: |
21712903-7955-4b48-aa11-6a62d13f00dc |
Typelib ID: |
45037699-51f9-4e37-b9b4-00d81aee540e |
Name |
Size of data |
MD5 |
.text |
897024 |
43d75c786ba02b22f77f011cbd0f9de8 |
.reloc |
512 |
bb71b32740079d0ca9f1c1779d4efcd4 |
.rsrc |
33792 |
88f5b602c28ad1201bc9b0fa33b6066a |