How to remove 4[1].exe
4[1].exe
The module 4[1].exe has been detected as Trojan.Packed
File Details
| Product Name: | Advanced SystemCare |
| Company Name: | IObit |
| MD5: | f0f8d85b2952a41b67ef705ff915b0ea |
| Size: | 906 KB |
| First Published: | 2020-09-30 15:17:29 (5 years ago) |
| Latest Published: | 2021-06-17 20:57:41 (4 years ago) |
| Status: | Trojan.Packed (on last analysis) | |
| Analysis Date: | 2021-06-17 20:57:41 (4 years ago) |
Common Places:
| %localappdata%\microsoft\windows\inetcache\ie |
| %temp% |
| %appdata% |
| %appdata% |
| %sysdrive%\windows.old\users\ibadei kharmawphlang\appdata\local\microsoft\windows\inetcache\ie |
Geography:
| 40.0% | ||
| 40.0% | ||
| 20.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x001cc871 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .pdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| _RDATA | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .vmp0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .vmp1 | 901120 | 39e6e10f413ff68259834a11ca817be4 |
| .rsrc | 26112 | 3bf55d73a3e2883e381c0698ed9c90a3 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 4[1].exe