How to remove qemu-edid.exe
- File Details
- Overview
- Analysis
qemu-edid.exe
The module qemu-edid.exe has been detected as Trojan.Kryptik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
e10769989369d5e99032f6b09b2b77cd |
Size: |
84 KB |
First Published: |
2019-11-04 19:05:24 (4 years ago) |
Latest Published: |
2019-11-18 07:42:24 (4 years ago) |
Status: |
Trojan.Kryptik (on last analysis) |
|
Analysis Date: |
2019-11-18 07:42:24 (4 years ago) |
Overview
%programfiles%\gns3 |
%programfiles%\gns3 |
%sysdrive%\windows.old\program files\gns3 |
%programfiles%\gns3 |
Windows 10 |
50.0% |
|
Windows 7 |
50.0% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x00001500 |
Name |
Size of data |
MD5 |
.text |
56320 |
6d9b1a109b138bdd47b563cc8c9a43e4 |
.data |
512 |
f5bf81833e5c1b42be41117a730ae46a |
.rdata |
7680 |
1d7d92385788c9285d22645d7e3c2241 |
.pdata |
3072 |
f19b9c359645e89b9edc908a977a8ed5 |
.xdata |
2560 |
34165dba67b7d98550bdc77b0bce1256 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
4096 |
9e93d7bca5f0165a478105fe26963d97 |
.CRT |
512 |
3a31f8296e2877a0da39720fe9c9e539 |
.tls |
512 |
addf77870180da32572f09d52c7c3c81 |
.rsrc |
6656 |
a73a9693706ed6ff18fea1a7f6972e88 |