How to remove Registrator_4e51964d.exe
- File Details
- Overview
- Analysis
Registrator_4e51964d.exe
The module Registrator_4e51964d.exe has been detected as Trojan.Agent
File Details
Product Name: |
|
MD5: |
b39fb0b1a8c0a185a169a9881eebc5f8 |
Size: |
5 MB |
First Published: |
2018-09-22 17:16:10 (6 years ago) |
Latest Published: |
2024-10-05 23:01:36 (2 months ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2024-10-05 23:01:36 (2 months ago) |
%sysdrive%\downloads |
%programfiles% |
%desktop%\aomei.backupper.4.5.2.pro.2b |
%profile%\downloads\technician plus\technician plus |
%sysdrive% |
%profile%\downloads |
%profile%\downloads\programs |
%sysdrive%\desktop\軟體 |
%desktop%\backupperpro.4.5.2.wt\backupperpro.4.5.2.wt |
%sysdrive%\programe\aomei_backupper_4.5.2_technician_plus_multilingual_downloadly.ir.rar\aomei backupper 4.5.2 technician plus multilingual |
Registrator.exe |
Registrator_4e51964d.exe |
|
12.2% |
|
|
10.8% |
|
|
8.8% |
|
|
7.4% |
|
|
5.4% |
|
|
4.1% |
|
|
4.1% |
|
|
4.1% |
|
|
3.4% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.0% |
|
|
2.0% |
|
|
2.0% |
|
|
2.0% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
Windows 10 |
77.3% |
|
Windows 7 |
19.3% |
|
Windows 8.1 |
2.7% |
|
Windows Server 2008 R2 |
0.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001000 |
Name |
Size of data |
MD5 |
.text |
512 |
7c91e9bf16a66fc2801543a68310a633 |
.rdata |
512 |
d21b6fb5dbea256f857947f32f72398b |
.bxpck |
4326912 |
7d27393c3f2ca2a85363869ebe454f01 |
.main |
1096192 |
deddd00c11ccf4fd3224763dfc841f91 |
.rsrc |
19456 |
6016d56f44d1cdad78d612ba056f95db |