How to remove win1nit.exe
- File Details
- Overview
- Analysis
win1nit.exe
The module win1nit.exe has been detected as Trojan.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
9fb6eb5b8e72e6671765a91f12f273fb |
Size: |
413 KB |
First Published: |
2017-07-19 15:10:58 (7 years ago) |
Latest Published: |
2018-10-20 18:14:05 (6 years ago) |
Status: |
Trojan.Gen (on last analysis) |
|
Analysis Date: |
2018-10-20 18:14:05 (6 years ago) |
%windir%\temp |
%sysdrive%\$recycle.bin\s-1-5-21-3012146604-1498240599-2520980310-1000\$rzd99bp |
%commonappdata%\temp |
%profile%\desktop |
%windir% |
%commonappdata% |
winin1t.exe |
win1nit.exe |
spoolss.exe |
csrss.exe |
|
94.0% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
0.9% |
|
Windows 7 |
95.7% |
|
Windows Server 2008 R2 |
4.3% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00015cfc |
Name |
Size of data |
MD5 |
.text |
303104 |
965e9720d8af22d03fbe3a5d55ff8e3f |
.rdata |
92672 |
d70cc1db349b071393131606a7eab78e |
.data |
7168 |
968712f20756939cc9d57a54736c73f3 |
.pdata |
15360 |
eae57afdda0b1ee5f60260d855333c0d |
.rsrc |
1536 |
7c84d715c5e98830869e3dccf3d86978 |
.reloc |
2560 |
0d7cfa9f42d482d8e1dffb00bb9b753c |