How to remove winDecrypt.exe
- File Details
- Overview
- Analysis
winDecrypt.exe
The module winDecrypt.exe has been detected as General Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
c7fc848af3db25eff504b4d37d4b3813 |
Size: |
1 MB |
First Published: |
2019-05-29 10:01:41 (6 years ago) |
Latest Published: |
2021-01-03 09:55:14 (4 years ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2021-01-03 09:55:14 (4 years ago) |
%sysdrive%\softwares\softwares\break windows password\verypdf pdf password remover 6.0 + crcak rs.4234.59 |
%sysdrive%\software\verypdf pdf password remover 6.0 + crcak [crcaksnow] |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%sysdrive%\pc rosa |
|
50.0% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
Windows 7 |
62.5% |
|
Windows 10 |
37.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000811f5 |
Name |
Size of data |
MD5 |
|
745472 |
acafa6b06adc5ec6bbe3e0021c06a727 |
|
452608 |
86498435184c360e5fe31985e26fab2e |
.rsrc |
8192 |
0d7a468504e2d1940f10e3097406777c |
.Imports |
8704 |
db332de522a15f1d053fe3315247f958 |