How to remove restart.exe
- File Details
- Overview
- Analysis
restart.exe
The module restart.exe has been detected as Trojan.Downloader
File Details
| Product Name: |
|
| MD5: |
ba2bf8fa64a4be54532f427dcd69af4f |
| Size: |
116 KB |
| First Published: |
2022-12-05 23:26:36 (3 years ago) |
| Latest Published: |
2024-03-18 23:01:18 (2 years ago) |
| Status: |
Trojan.Downloader (on last analysis) |
|
| Analysis Date: |
2024-03-18 23:01:18 (2 years ago) |
| %desktop%\perceptek |
| %sysdrive%\system volume information\_restore{546a6f01-f557-40ed-9c5b-bc91c71fe457} |
| %sysdrive% |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00002161 |
| Name |
Size of data |
MD5 |
| .text |
69632 |
7f086c361f74024cc70fefa07503ca6b |
| .rdata |
20480 |
16562a302e132ae9e1d468ef12f4f831 |
| .data |
8192 |
e480f86bf3c0b1e511482025c04bdeac |
| .rsrc |
16384 |
950349db11dbb40e4aee6f99419cde91 |