How to remove RestoroApp.exe
- File Details
- Overview
- Analysis
RestoroApp.exe
The module RestoroApp.exe has been detected as PUP.Restoro
File Details
Product Name: |
|
Company Name: |
|
MD5: |
6352b0f09d02e2cfcc0b849b7088087b |
Size: |
465 KB |
First Published: |
2020-04-02 13:43:00 (5 years ago) |
Latest Published: |
2021-04-19 20:24:07 (4 years ago) |
Status: |
PUP.Restoro (on last analysis) |
|
Analysis Date: |
2021-04-19 20:24:07 (4 years ago) |
Overview
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
%programfiles%\restoro |
United States |
15.2% |
|
Philippines |
11.7% |
|
United Kingdom |
8.6% |
|
Ireland |
7.8% |
|
Australia |
7.0% |
|
Germany |
4.3% |
|
Kenya |
4.3% |
|
France |
4.3% |
|
Russia |
2.3% |
|
Morocco |
2.3% |
|
Austria |
2.3% |
|
Iran |
1.6% |
|
Turkey |
1.6% |
|
Saudi Arabia |
1.6% |
|
Czech Republic |
1.6% |
|
Thailand |
1.2% |
|
Sri Lanka |
1.2% |
|
Argentina |
1.2% |
|
Romania |
1.2% |
|
United Arab Emirates |
1.2% |
|
Nigeria |
1.2% |
|
Italy |
1.2% |
|
Jordan |
1.2% |
|
Denmark |
1.2% |
|
Serbia |
1.2% |
|
Dominican Republic |
0.8% |
|
Croatia |
0.8% |
|
Finland |
0.8% |
|
Nepal |
0.8% |
|
Sweden |
0.8% |
|
Indonesia |
0.8% |
|
Mexico |
0.8% |
|
Bahrain |
0.8% |
|
Norway |
0.8% |
|
Egypt |
0.4% |
|
Bosnia and Herzegovina |
0.4% |
|
Malaysia |
0.4% |
|
Brazil |
0.4% |
|
Bangladesh |
0.4% |
|
Netherlands |
0.4% |
|
Slovakia |
0.4% |
|
Mauritius |
0.4% |
|
China |
0.4% |
|
Greece |
0.4% |
|
Pakistan |
0.4% |
|
India |
0.4% |
|
Vietnam |
0.4% |
|
Windows 10 |
92.6% |
|
Windows 7 |
5.2% |
|
Windows 8.1 |
1.9% |
|
Windows 8 |
0.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000088e8 |
Name |
Size of data |
MD5 |
.text |
112640 |
5716c9f86e868a23860fdcf3c2db97c5 |
.rdata |
56320 |
b98ac2b48af5d96322e977393f05b5d4 |
.data |
3072 |
c0aac9a59baf95b4cc43f1c2d77f7581 |
.pdata |
5632 |
7ea832a80ce09689757b686beb961bad |
.rsrc |
282624 |
6bcbd45ad84579e9a461d26ba13e7f2a |
.reloc |
2048 |
fd03da3fb4ea96e5c7079096cbe0a947 |