How to remove windrv.exe
windrv.exe
The module windrv.exe has been detected as Backdoor.Gen
File Details
| Product Name: | TreeSize Free |
| Company Name: | JAM Software |
| MD5: | 09658c2f87f71fbd91266c495028a92d |
| Size: | 191 KB |
| First Published: | 2019-11-20 17:49:56 (5 years ago) |
| Latest Published: | 2023-02-19 23:12:02 (2 years ago) |
| Status: | Backdoor.Gen (on last analysis) | |
| Analysis Date: | 2023-02-19 23:12:02 (2 years ago) |
Common Places:
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %profile% |
| %profile% |
| %profile% |
| %profile% |
| %profile% |
Geography:
| 70.0% | ||
| 20.0% | ||
| 10.0% |
OS Version:
| Windows 7 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x00003217 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 23552 | 92032f5e50e74fe0fe80a33ba4ca92db |
| .rdata | 4608 | 5801d712ecba58aa87d1e7d1aa24f3aa |
| .data | 1024 | f2470ac8847791744aff280e7e2f5353 |
| .ndata | 0 | 00000000000000000000000000000000 |
| .rsrc | 111104 | c1cd26f8b14b41da973affbf962f4aa3 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for windrv.exe