How to remove winDecrypt.exe
- File Details
- Overview
- Analysis
winDecrypt.exe
The module winDecrypt.exe has been detected as General Threat
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
c7fc848af3db25eff504b4d37d4b3813 |
| Size: |
1 MB |
| First Published: |
2019-05-29 10:01:41 (6 years ago) |
| Latest Published: |
2021-01-03 09:55:14 (4 years ago) |
| Status: |
General Threat (on last analysis) |
|
| Analysis Date: |
2021-01-03 09:55:14 (4 years ago) |
| %sysdrive%\softwares\softwares\break windows password\verypdf pdf password remover 6.0 + crcak rs.4234.59 |
| %sysdrive%\software\verypdf pdf password remover 6.0 + crcak [crcaksnow] |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %sysdrive%\pc rosa |
|
50.0% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
| Windows 7 |
62.5% |
|
| Windows 10 |
37.5% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000811f5 |
| Name |
Size of data |
MD5 |
|
745472 |
acafa6b06adc5ec6bbe3e0021c06a727 |
|
452608 |
86498435184c360e5fe31985e26fab2e |
| .rsrc |
8192 |
0d7a468504e2d1940f10e3097406777c |
| .Imports |
8704 |
db332de522a15f1d053fe3315247f958 |