How to remove s768.exe
s768.exe
The module s768.exe has been detected as Trojan.Startpage
File Details
MD5: | 3e49f9b4e3b68a349dbc2827a73c492f |
Size: | 2 MB |
First Published: | 2017-05-26 12:09:48 (6 years ago) |
Latest Published: | 2019-12-16 00:09:47 (4 years ago) |
Status: | Trojan.Startpage (on last analysis) | |
Analysis Date: | 2019-12-16 00:09:47 (4 years ago) |
Overview
Signed By: | Vondos Media GmbH |
Status: | Valid |
Common Places:
%appdata%\browser-security |
%sysdrive%\adwcleaner\quarantine\files\rsomeayrkuapvgxjtrqmonmqikkdkqfj |
%sysdrive%\adwcleaner\quarantine\files |
%appdata% |
%profile%\z2107\dane aplikacji |
%appdata% |
Geography:
52.9% | ||
8.8% | ||
8.8% | ||
5.9% | ||
5.9% | ||
2.9% | ||
2.9% | ||
2.9% | ||
2.9% | ||
2.9% | ||
2.9% |
OS Version:
Windows 7 | 44.1% | |
Windows 10 | 38.2% | |
Windows XP | 11.8% | |
Windows 8.1 | 2.9% | |
Windows Vista | 2.9% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0022666c |
PE Sections:
Name | Size of data | MD5 |
.text | 2241536 | 56a44f43255a6e03d5ff09e7773399da |
.itext | 6144 | c9b65dc83e0940b4c9edb4900e55f027 |
.data | 29696 | 8bdb892eea0834a94f5f45cca01ff84f |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 14848 | 6ee6f003ffbd73c3ab0fb3123e7ef43c |
.didata | 3072 | 799ed8e973d9d997f20629e882e01d0c |
.edata | 512 | 37ed52bcfdae56cbf729f28122c1ebd8 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | aee4ffbcbe624607a4d70992e17f53ac |
.reloc | 202752 | dd46cc05328a303afda42c26d836d1c3 |
.rsrc | 43520 | 180f877e0b925dae2e09f1be8e866efe |
More information:
Download GridinSoft
Anti-Malware - Removal tool for s768.exe