How to remove winlogonview.exe
- File Details
- Overview
- Analysis
winlogonview.exe
The module winlogonview.exe has been detected as Trojan.Kryptik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
7996df6634c576270c199f1882ee71f0 |
| Size: |
90 KB |
| First Published: |
2020-07-30 17:56:10 (5 years ago) |
| Latest Published: |
2024-09-17 23:01:16 (a year ago) |
| Status: |
Trojan.Kryptik (on last analysis) |
|
| Analysis Date: |
2024-09-17 23:01:16 (a year ago) |
Overview
| %sysdrive%\logiciels divers\programs\nirsoft_package_1.20.13 |
| %sysdrive%\programs\programs\nirsoft_package_1.20.13 |
| %desktop%\tools\compman\programs\nirsoft_package_1.20.13 |
| %desktop%\tools\compman\programs\nirsoft_package_1.20.13 |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0000bbfa |
| Name |
Size of data |
MD5 |
| .text |
45568 |
21c981cf88e77696b9ba247faa3e0701 |
| .rdata |
11264 |
9a98ad36d0e0cd2951a5cf13cfa95d77 |
| .data |
1024 |
912b019a0e573c6b085de0adc2c47627 |
| .rsrc |
21504 |
3395115a40c7504a72b7a74fa32431c0 |