How to remove Upgrade.exe
- File Details
- Overview
- Analysis
Upgrade.exe
The module Upgrade.exe has been detected as Trojan.Downloader
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
83cdf93921f35134134712c9227e4218 |
| Size: |
240 KB |
| First Published: |
2022-12-08 23:11:51 (3 years ago) |
| Latest Published: |
2024-08-14 23:01:49 (a year ago) |
| Status: |
Trojan.Downloader (on last analysis) |
|
| Analysis Date: |
2024-08-14 23:01:49 (a year ago) |
| %programfiles%\honestech |
| %programfiles%\honestech |
| %programfiles%\honestech |
| %programfiles%\honestech |
| %programfiles%\honestech |
| %programfiles%\honestech |
| %programfiles%\honestech |
| %sysdrive%\$recycle.bin\s-1-5-21-1715425562-3811997313-1981644419-1001\$rq2zks9 |
| %programfiles%\honestech |
| %programfiles%\honestech |
|
18.2% |
|
|
18.2% |
|
|
18.2% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
| Windows 10 |
90.9% |
|
| Windows 7 |
9.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0000bc4a |
| Name |
Size of data |
MD5 |
| .text |
163840 |
8daaa754548cd328a39ac12369b97286 |
| .rdata |
40960 |
14d16ba56daa1a86afd5286a9254ec6c |
| .data |
20480 |
a41f2c2bb979f121e4815d54c28c7406 |
| .rsrc |
16384 |
f5cf7ed05bc30f66021b63ef24a533e0 |