How to remove registrywinner.exe
- File Details
- Overview
- Analysis
registrywinner.exe
The module registrywinner.exe has been detected as Adware.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
75796bfc5ad9aadb727a5f3903c88be7 |
Size: |
16 MB |
First Published: |
2018-11-09 02:03:42 (6 years ago) |
Latest Published: |
2020-12-29 21:06:47 (4 years ago) |
Status: |
Adware.Downloader (on last analysis) |
|
Analysis Date: |
2020-12-29 21:06:47 (4 years ago) |
%profile%\downloads\registry.winner.7.1.3.10.portable\registry.winner.7.1.3.10.portable\registrywinner portable |
%profile%\downloads\rsload.net.registry |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
37.5% |
|
|
25.0% |
|
|
12.5% |
|
|
12.5% |
|
|
12.5% |
|
Windows 7 |
75.0% |
|
Windows 10 |
25.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0015c945 |
Name |
Size of data |
MD5 |
.text |
1716224 |
eee2ab836e6de1faf81e7f8eed32c3da |
.rdata |
208896 |
3c2b39962b1a0062580bcf46a2d68df1 |
.data |
118784 |
3df2fcf3f65c6d4f154c1cbad2bad7a1 |
.rsrc |
14909440 |
8d9db342660e6ab9442c16436d683cd6 |