How to remove winserv.exe
- File Details
- Overview
- Analysis
winserv.exe
The module winserv.exe has been detected as Trojan.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3f4f5a6cb95047fea6102bd7d2226aa9 |
Size: |
10 MB |
First Published: |
2022-07-14 23:21:03 (2 years ago) |
Latest Published: |
2024-10-05 23:03:00 (4 hours ago) |
Status: |
Trojan.Downloader (on last analysis) |
|
Analysis Date: |
2024-10-05 23:03:00 (4 hours ago) |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
|
54.8% |
|
|
10.0% |
|
|
5.0% |
|
|
4.6% |
|
|
3.8% |
|
|
1.7% |
|
|
1.7% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
Windows 10 |
95.9% |
|
Windows 7 |
4.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0077b96c |
Name |
Size of data |
MD5 |
.tls |
10560512 |
2e7ca63fa88daeae7fd9830b8655abbd |
.rsrc |
92160 |
64ab199fce033650bbe20cf75c3e3597 |
.idata |
22528 |
46c8ceb8f393fdd5b905455c1e58401f |