How to remove Button64.exe

Button64.exe

The module Button64.exe has been detected as Hijack.IE

Button64.exe
MD5: b44094359cb72219cd54a6b2cb0670e8
Size: 185 KB
First Published: 2017-05-25 12:05:32 (7 years ago)
Latest Published: 2020-12-11 19:03:55 (4 years ago)
Status: Hijack.IE (on last analysis)
Analysis Date: 2020-12-11 19:03:55 (4 years ago)
Signed By: Cloud Software
Status: Valid
%appdata%\browserextensions
%profile%\rashant sethy\application data\browserextensions
%profile%\dminnnnn\application data\browserextensions
%appdata%\browser extensions
%profile%\dministrator\application data\browserextensions
%sysdrive%\adwcleaner\quarantine\fraqbc8wsa
%sysdrive%\adwcleaner\quarantine\x3cf3ednhm
%profile%\dmin\application data\browserextensions
%appdata%
%sysdrive%\adwcleaner\quarantine\files
button64.exe
Button64.exe
39.4%
6.4%
5.7%
5.3%
4.9%
4.2%
3.8%
3.4%
3.0%
3.0%
2.7%
2.7%
2.3%
1.9%
1.9%
1.1%
1.1%
1.1%
1.1%
1.1%
1.1%
0.8%
0.8%
0.4%
0.4%
0.4%
Windows 10 53.9%
Windows 7 34.5%
Windows 8.1 6.7%
Windows XP 3.0%
Windows 8 1.9%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x00003fc8

PE Sections:

Name Size of data MD5
.text 51200 74edb857b588fa17d4efbebbfaa81535
.rdata 17920 c963e367ed61088f5530e88f1cf974f3
.data 110080 ffb0444b7759c2911f51184fc966bc74
.pdata 3584 0fb4e8700cfc5cf096499a2a0e666815
.rsrc 1024 1bc3ca259875cc2cfcb6c264c34b80af
.reloc 1536 d8bb112b171875305adcbd5fa9563d3b

More information:

Download GridinSoft Anti-Malware - Removal tool for Button64.exe