How to remove button.exe
button.exe
The module button.exe has been detected as Hijack.IE
File Details
MD5: | 7292784a5776684cb07301d85853f485 |
Size: | 73 KB |
First Published: | 2017-06-06 15:11:20 (6 years ago) |
Latest Published: | 2018-10-19 15:12:22 (5 years ago) |
Status: | Hijack.IE (on last analysis) | |
Analysis Date: | 2018-10-19 15:12:22 (5 years ago) |
Overview
Signed By: | Cloud Installer |
Status: | Valid |
Common Places:
%appdata%\browserextensions |
%profile%\dmin\application data\browserextensions |
%appdata% |
%profile%\ima\application data |
%sysdrive%\adwcleaner\quarantine\files |
%profile%\ser\application data |
File Names:
Button.exe |
button.exe |
Geography:
25.6% | ||
17.9% | ||
15.4% | ||
10.3% | ||
7.7% | ||
7.7% | ||
5.1% | ||
5.1% | ||
2.6% | ||
2.6% |
OS Version:
Windows 7 | 53.5% | |
Windows 10 | 23.3% | |
Windows XP | 23.3% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000035c5 |
PE Sections:
Name | Size of data | MD5 |
.text | 46080 | ac33f801c5a02dd9ab9da71d18d3710a |
.rdata | 12800 | d49e74a8826ac44e88dc3ef7b02e83d0 |
.data | 4608 | 88621b461632a2304420ce6d80a07768 |
.rsrc | 1024 | 474c254a38c470957e95c390252a19f4 |
.reloc | 6656 | fdf43c9464c900b410944f1f64466e86 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for button.exe