How to remove Button64.exe
- File Details
- Overview
- Analysis
Button64.exe
The module Button64.exe has been detected as Adware.Widgi
File Details
MD5: |
80aaa8ee5242d63155857261b19bd7d3 |
Size: |
47 KB |
First Published: |
2017-06-07 08:03:24 (7 years ago) |
Latest Published: |
2018-11-18 22:14:59 (6 years ago) |
Status: |
Adware.Widgi (on last analysis) |
|
Analysis Date: |
2018-11-18 22:14:59 (6 years ago) |
Overview
%appdata%\browserextensions |
%sysdrive%\adwcleaner\quarantine\files\otaemebjhreblpdttnhpenrlazlasgrt |
%appdata% |
%sysdrive%\wd backup.swstor\tristan\ntq4zjjhnwzhnzuyndqynm\volume{884ebe4f-5e4a-4687-abcc-d95396a674fa}\users\tristan\appdata\roaming |
button64.exe |
Button64.exe |
|
30.4% |
|
|
13.0% |
|
|
13.0% |
|
|
13.0% |
|
|
13.0% |
|
|
13.0% |
|
|
4.3% |
|
Windows 10 |
56.5% |
|
Windows 7 |
43.5% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000016a4 |
Name |
Size of data |
MD5 |
.text |
25088 |
e8ec3c4b77b262843cd65bec5dcae0cd |
.rdata |
11264 |
e37596a16eaa59ab4d378530766db925 |
.data |
4608 |
e871d86d29eaf851d76f988f7a3cf854 |
.pdata |
1536 |
c63c9f588a4f8eb44f0e3b16f3c5efb0 |
.rsrc |
1024 |
da7e71f2ea6dcc5640d00e0ed24f40ae |
.reloc |
1024 |
e65860cd0be37f00217899d75f30d690 |