Meta Quest Remote Desktop.exe threat report

MD5 c8d1c99102c9db3fa4ead59dd4042cb8
Latest seen 2025-09-01 23:00:56 (8 months ago)
First seen 2025-09-01 23:00:56 (8 months ago)
Size 73 MB

This report summarizes the file identity, detection status, publisher metadata, observed locations, and technical indicators for Meta Quest Remote Desktop.exe. ThreatInfo currently classifies this sample as Trojan.Heur!.

GridinSoft Anti-Malware detection

GridinSoft already detects this file

The latest ThreatInfo record shows Meta Quest Remote Desktop.exe detected as Trojan.Heur!. You can download GridinSoft Anti-Malware to scan the system and remove this detection if the file is present on your device.

Detection name
Trojan.Heur!
Last analysis
2025-09-01 23:00:56 (8 months ago)
File hash
c8d1c99102c9db3fa4ead59dd4042cb8
Download Anti-Malware

Meta Quest Remote Desktop.exe is a Windows file recorded in the ThreatInfo database. It is associated with Meta Quest Remote Desktop Server. The reported company name is Meta Platforms Technologies LLC. The current detection status is Trojan.Heur!, based on the latest analysis from 2025-09-01 23:00:56 (8 months ago).

If Meta Quest Remote Desktop.exe appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Trojan.Heur!.

Product Name: Meta Quest Remote Desktop Server
Company Name: Meta Platforms Technologies LLC
MD5: c8d1c99102c9db3fa4ead59dd4042cb8
Size: 73 MB
First Published: 2025-09-01 23:00:56 (8 months ago)
Latest Published: 2025-09-01 23:00:56 (8 months ago)
Status: Trojan.Heur! (on last analysis)
Analysis Date: 2025-09-01 23:00:56 (8 months ago)
Meta Quest Remote Desktop.exe detection screenshot

The screenshot is a visual record of a GridinSoft Anti-Malware detection for this sample. Use the hash and metadata above as the primary identifiers when comparing the file on your system.

Signed By: Meta Platforms, Inc.
Status: Valid

The signature on Meta Quest Remote Desktop.exe is reported as valid. A valid signature helps confirm publisher identity, but it does not automatically make the file safe if the installer was bundled, abused, or downloaded from an untrusted source.

%programfiles%

ThreatInfo has observed Meta Quest Remote Desktop.exe in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is France with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for Meta Quest Remote Desktop.exe is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

Meta Quest Remote Desktop.exe is identified as pe for 64 systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows GUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x031d5234

PE Sections:

Name Size of data MD5
.text 52607488 c45b58d1179a42f26a5a6c3ac064e0cf
.rdata 16258048 66dd0959b97c67fb30bfb9613dbfb44d
.data 3945472 7659b0a8e60f9d3a9a4eddf00c536b61
.pdata 2927616 22904a809abdf6336e00d4dc1b94c50d
.gxfg 19968 9aa77cf853497ea65cb8f7f172c2a9fe
.retplne 512 83377a6277ad66f75d5e3864a90da4e1
.rodata 5120 89942d51d21d6ba939e88089e6d1c992
.tls 1024 db429e20a352a16d6f11a725b6a9c683
CPADinfo 512 60d3ea61d541c9be2e845d2787fb9574
_RDATA 512 1c991c0b042604959e8832aba0a0138f
.rsrc 655360 b51127b9c475a7b2f2d69868389df45f
.reloc 311296 52720a9bfa6d3e322742e95aa8958cfe

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information: