How to remove RetainPt.exe
- File Details
- Overview
- Analysis
RetainPt.exe
The module RetainPt.exe has been detected as Adware.Hebogo
File Details
MD5: |
18048cac3f601d322c7983a00f0e4bc5 |
Size: |
141 KB |
First Published: |
2017-08-17 08:10:11 (7 years ago) |
Latest Published: |
2018-03-21 01:12:11 (6 years ago) |
Status: |
Adware.Hebogo (on last analysis) |
|
Analysis Date: |
2018-03-21 01:12:11 (6 years ago) |
Overview
%sysdrive%\quarantine_mzk\folders\201606261281099\winctrviewer. 1.34.04.52\engin\retain |
%appdata%\winctrviewer\engin |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000025b8 |
Name |
Size of data |
MD5 |
.text |
126976 |
87ae096546596d46bea742eb62452d29 |
.data |
4096 |
620f0b67a91f7f74151bc5be745b7110 |
.rsrc |
4096 |
bc357c3ca0c08ca5fbaca0845d9c441a |