How to remove hstart.exe
hstart.exe
The module hstart.exe has been detected as Risk.Gen

File Details
Product Name: | Hidden Start |
Company Name: | NTWind Software |
MD5: | a0f406c4bdfb3399a96cf461e2ea0ff1 |
Size: | 104 KB |
First Published: | 2017-06-09 12:07:00 (7 years ago) |
Latest Published: | 2024-11-04 23:11:20 (4 months ago) |
Status: | Risk.Gen (on last analysis) | |
Analysis Date: | 2024-11-04 23:11:20 (4 months ago) |
Overview
Signed By: | Alexander Avdonin |
Status: | Valid |
Common Places:
%appdata%\pdf reader\inner |
%profile%\nyil\application data\pdf reader |
%appdata%\pdf reader |
%appdata%\pdf reader |
%appdata%\pdf reader |
Geography:
28.6% | ||
28.6% | ||
14.3% | ||
14.3% | ||
14.3% |
OS Version:
Windows 10 | 57.1% | |
Windows 7 | 28.6% | |
Windows XP | 14.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00001b00 |
PE Sections:
Name | Size of data | MD5 |
.text | 52736 | b08a16a42a27c2b897c274316a39ffab |
.rdata | 19968 | 8bbaad4f7d0e768a3b756aec0ff70728 |
.data | 3584 | af1a2055c9a554666bc453da0d7e5851 |
.rsrc | 26112 | 63a757d6cd8f9ea0926e1bc2bdcd84ca |
More information:
Download GridinSoft
Anti-Malware - Removal tool for hstart.exe
