How to remove data.exe

data.exe

The module data.exe has been detected as Trojan.Gen

data.exe

data.exe is a Windows file recorded in the ThreatInfo database. It is associated with AutoPlay Media Studio Runtime. The current detection status is Trojan.Gen, based on the latest analysis from 2022-11-20 23:28:44 (3 years ago).

If data.exe appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Trojan.Gen.

Product Name: AutoPlay Media Studio Runtime
MD5: 94b4cf20c6b5179412645e951756d279
Size: 6 MB
First Published: 2022-11-20 23:28:44 (3 years ago)
Latest Published: 2022-11-20 23:28:44 (3 years ago)
Status: Trojan.Gen (on last analysis)
Analysis Date: 2022-11-20 23:28:44 (3 years ago)
%windir%

ThreatInfo has observed data.exe in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is Argentina with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for data.exe is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

data.exe is identified as pe for 32 systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00244f2b

PE Sections:

Name Size of data MD5
.text 4030976 48372a2fddf5240e0d09df123a52d31d
.rdata 874496 d23898e8f9c5f0169d34d086d57106b4
.data 148480 8bd3f2033e1bccfdb431c82ff9c8824f
.rsrc 1299968 24f9efb8f477861b1fd3875a7c911fbf

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information:

Download GridinSoft Anti-Malware - Removal tool for data.exe