How to remove ColorScheme.exe


The module ColorScheme.exe has been detected as Backdoor.Gen

Product Name:

Windows Application Color Scheme

Company Name:

Microsoft Windows Application

MD5: f5e607b136adb620542e1e8da7e79610
Size: 1 MB
First Published: 2017-09-13 21:09:39 (4 months ago)
Latest Published: 2017-09-13 21:09:39 (4 months ago)
Status: Backdoor.Gen (on last analysis)
Analysis Date: 2017-09-13 21:09:39 (4 months ago)
%profile%\ser\application data\microsoft\windows
Windows XP 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00096132

PE Sections:

Name Size of data MD5
.text 935424 c37d8c9bd31369907e3b48a835f6dcdb
.rdata 303104 51a6f68e40ac5105647c48e22fd0077d
.data 89600 6674ab1ceffb8d5a05d1e54b68b278fb
.rsrc 4096 324c73a0b14c75ce8f0be5d43528eaf9
.reloc 77824 1a2b0140df5e848546ccee9d8c322ef6

More information:

Download GridinSoft Anti-Malware - Removal tool for ColorScheme.exe
Leave a Comment