How to remove procexp.exe
- File Details
- Overview
- Analysis
procexp.exe
The module procexp.exe has been detected as Hijack.Explorer
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f0f1f6a8525d303e342232e0cee7d1a6 |
Size: |
2 MB |
First Published: |
2018-01-11 14:28:59 (7 years ago) |
Latest Published: |
2018-06-10 09:24:35 (6 years ago) |
Status: |
Hijack.Explorer (on last analysis) |
|
Analysis Date: |
2018-06-10 09:24:35 (6 years ago) |
%programfiles%\total commander\utilites |
%sysdrive%\новая папка\tc_vim_18\utilities |
%sysdrive%\tc_vim_25\utilities |
%sysdrive%\tcpu68\programm |
Windows 7 |
57.1% |
|
Windows 10 |
42.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0009a548 |
Name |
Size of data |
MD5 |
.text |
758784 |
aea4839fd9a7fe63ed04c98b93a9a11a |
.rdata |
177152 |
1ba6b552640bbcb497731492217fe5e2 |
.data |
37376 |
2c723787f1d5156733d43a489e40d211 |
.rsrc |
1772544 |
dd67e7e8bc66b75b6587e8cc567e90d0 |
.reloc |
50176 |
33c80ddb03b8bfe813fdbf04b1a88b40 |
.data |
15872 |
0cda19a2f61b9398c882f825c731fd41 |