How to remove cp[1].exe
cp[1].exe
The module cp[1].exe has been detected as Trojan.Downloader
File Details
| Product Name: | NotificationCenter.Builders |
| MD5: | c0ef9d267c5557088c0724b75f1d10b5 |
| Size: | 5 MB |
| First Published: | 2023-11-22 23:30:53 (2 years ago) |
| Latest Published: | 2023-11-26 23:15:51 (2 years ago) |
| Status: | Trojan.Downloader (on last analysis) | |
| Analysis Date: | 2023-11-26 23:15:51 (2 years ago) |
Overview
| Signed By: | Hewlett-Packard Company /silver/ |
| Status: | Valid |
Common Places:
| %localappdata%\microsoft\windows\inetcache\ie |
| %temp% |
| %commonappdata% |
| %temp% |
| %commonappdata% |
Geography:
| 60.0% | ||
| 40.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | |
| Image Base: | 0x00400000 |
| Entry Address: | 0x008d8b36 |
PE Sections:
| Name | Size of data | MD5 |
| 0 | d41d8cd98f00b204e9800998ecf8427e | |
| 0 | d41d8cd98f00b204e9800998ecf8427e | |
| 0 | d41d8cd98f00b204e9800998ecf8427e | |
| 0 | d41d8cd98f00b204e9800998ecf8427e | |
| 0 | d41d8cd98f00b204e9800998ecf8427e | |
| .imports | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .Winzip0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .themida | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .boot | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .Winzip1 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .³Zip³ | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .³Zip³ | 1024 | ca354bd56fbf0d89b99b10ac80674a95 |
| .³Zip³ | 6005760 | bdf8da46ce3c600dddfcef8dc9f5f729 |
| .reloc | 7168 | 9a277884aa206d56f812c8c53463e610 |
| .rsrc | 2560 | 1efb3927291746a42dacd7f5e28f4d09 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for cp[1].exe