How to remove POWERR~1.EXE
- File Details
- Overview
- Analysis
POWERR~1.EXE
The module POWERR~1.EXE has been detected as Suspicious Object
File Details
Product Name: |
|
Company Name: |
|
MD5: |
0419b153fbcad8c197e2212ebb5a23db |
Size: |
220 KB |
First Published: |
2017-05-26 11:04:45 (7 years ago) |
Latest Published: |
2024-08-22 23:06:31 (3 months ago) |
Status: |
Suspicious Object (on last analysis) |
|
Analysis Date: |
2024-08-22 23:06:31 (3 months ago) |
%programs%\startup |
%startup% |
%commonstartup% |
%startup% |
%startup% |
%startup% |
PowerReg Scheduler V3.exe |
POWERR~1.EXE |
|
20.0% |
|
|
10.9% |
|
|
9.1% |
|
|
7.3% |
|
|
7.3% |
|
|
7.3% |
|
|
5.5% |
|
|
5.5% |
|
|
3.6% |
|
|
3.6% |
|
|
3.6% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
Windows 10 |
59.6% |
|
Windows 7 |
40.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000362e |
Name |
Size of data |
MD5 |
.text |
90112 |
30b49029137d7bb6569f44d7d3964371 |
.rdata |
20480 |
bdb6392a19945972cb00d74a8fb6f96c |
.data |
8192 |
02416788261a3c84799ad6258d6ce736 |
.rsrc |
102400 |
0e0d2989c238d9fc66f6cd6630c7a5bf |