How to remove 1C48.exe
1C48.exe
The module 1C48.exe has been detected as Trojan.Downloader

File Details
Product Name: | Beret Portable |
Company Name: | PortableApps.com |
MD5: | 18af94994b4552699bc8d1dfe909fbd2 |
Size: | 1 MB |
First Published: | 2022-05-16 23:15:34 (3 years ago) |
Latest Published: | 2022-05-17 23:57:23 (3 years ago) |
Status: | Trojan.Downloader (on last analysis) | |
Analysis Date: | 2022-05-17 23:57:23 (3 years ago) |
Overview
Signed By: | Rare Ideas, LLC |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%temp% |
%temp% |
Geography:
100.0% |
OS Version:
Windows 7 | 50.0% | |
Windows 10 | 50.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x000079b0 |
PE Sections:
Name | Size of data | MD5 |
.text | 29696 | 625ffbb61a1734cf8262be69f9aa4507 |
.rdata | 9216 | 67749711d1c5c0a9f7b54d4e294d60da |
.data | 1024 | 9d1580dccaf8e787a43caf4bba48a079 |
.pdata | 1024 | 68a8a22ae244ccfc6de366bbd726a995 |
.rsrc | 1633280 | 81039a8dd4adfa0872f79ca113f159eb |
.reloc | 512 | a625082b00a288ba7362286d5a2d9f45 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 1C48.exe
