How to remove Setup.exe
Setup.exe
The module Setup.exe has been detected as Spy.Keylogger
File Details
| Product Name: | searzar |
| Company Name: | |
| MD5: | 28d2b5233db11fb15d47576c7fce937c |
| Size: | 911 KB |
| First Published: | 2020-08-25 16:58:25 (5 years ago) |
| Latest Published: | 2021-06-22 20:13:48 (4 years ago) |
| Status: | Spy.Keylogger (on last analysis) | |
| Analysis Date: | 2021-06-22 20:13:48 (4 years ago) |
Common Places:
| %sysdrive%\windows.old\users\wences s. torres\appdata\local\temp |
| %sysdrive%\windows.old\users\wences s. torres\appdata\local\temp |
| %temp% |
| %temp% |
| %temp% |
| %temp% |
| %temp%\rarsfx0 |
| %temp% |
Geography:
| 25.0% | ||
| 25.0% | ||
| 25.0% | ||
| 12.5% | ||
| 12.5% |
OS Version:
| Windows 7 | 62.5% | |
| Windows 10 | 25.0% | |
| Windows 8 | 12.5% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000aad0 |
PE Sections:
| Name | Size of data | MD5 |
| CODE | 41984 | 49513e676dadfb3919c4b137dd7c6d66 |
| DATA | 1024 | 0a7b48e75f6b6ef4a087528fee0d185c |
| BSS | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 2560 | df5f31e62e05c787fd29eed7071bf556 |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 14dfa4128117e7f94fe2f8d7dea374a0 |
| .reloc | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rsrc | 74240 | 27a1b6ca8c2c1f9b9f43a6d502679ca8 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Setup.exe