How to remove office_keyfinder.exe
- File Details
- Overview
- Analysis
office_keyfinder.exe
The module office_keyfinder.exe has been detected as Trojan.Packed
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
49020a25fdb6fe96b94ff9fcecea0e8c |
| Size: |
493 KB |
| First Published: |
2017-05-22 09:04:38 (8 years ago) |
| Latest Published: |
2021-01-14 13:25:02 (4 years ago) |
| Status: |
Trojan.Packed (on last analysis) |
|
| Analysis Date: |
2021-01-14 13:25:02 (4 years ago) |
Overview
| %profile%\downloads |
| %sysdrive%\$recycle.bin\s-1-5-21-801164652-2782475786-1128462526-1001\$rpggnev |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00001495 |
| Name |
Size of data |
MD5 |
| .text |
7680 |
0219d3451543fa75d2bd82d5b8425484 |
| .rdata |
2048 |
ab70558812923322df3caeb7e44d8fc9 |
| .data |
0 |
00000000000000000000000000000000 |
| .rsrc |
95232 |
d5f1162d06a2b6eb8a4c8fffda97a9b5 |
| .reloc |
512 |
c48272dc7432ed6e17e29251447fbf24 |
| .tsustub |
125952 |
c52c320059fddc44a2c6aab9b0520e1d |
| .tsuarch |
266752 |
5feea2e111bda50a4fff16baaa49c0a3 |