How to remove setup.exe
setup.exe
The module setup.exe has been detected as Virus.Neshta

File Details
MD5: | 2c6eab26b683189c9ce7e165a532716a |
Size: | 158 KB |
First Published: | 2017-07-21 14:06:11 (7 years ago) |
Latest Published: | 2024-12-07 23:04:50 (6 months ago) |
Status: | Virus.Neshta (on last analysis) | |
Analysis Date: | 2024-12-07 23:04:50 (6 months ago) |
Common Places:
%temp%\byecbb7.tmp\disk1 |
%programfiles%\installshield installation information\{0217e1d1-bcef-4a61-af6d-f7740f65a066} |
%programfiles%\installshield installation information\{a586dc50-b18d-48fb-b7cc-a598200457c2} |
%sysdrive%\recovery\derkach_wolodymyr_0673716544_28032018_klso\data\base\my_computer\disk_d\d-1\драва\drivers |
%sysdrive%\recovery\derkach_wolodymyr_0673716544_28032018_klso\data\base\my_computer\disk_d\d-1\драва\drivers\raid |
%sysdrive%\kaktus_olja_buh24082019\c\program files\installshield installation information |
%sysdrive%\recovery\derkach_wolodymyr_0673716544_28032018_klso\data\base\my_computer\disk_d\d-1\драва\drivers\lan |
%sysdrive%\recovery\derkach_wolodymyr_0673716544_28032018_klso\data\base\my_computer\disk_d\d-1\драва\drivers\lan |
Geography:
37.5% | ||
31.3% | ||
31.3% |
OS Version:
Windows 7 | 87.5% | |
Windows 10 | 12.5% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000080e4 |
PE Sections:
Name | Size of data | MD5 |
CODE | 29696 | ca3464d4f08c9010e7ffa2fe3e890344 |
DATA | 1024 | 7ffc3168a7f3103634abdf3a768ed128 |
BSS | 0 | 00000000000000000000000000000000 |
.idata | 2560 | 6e7a45521bfca94f1e506361f70e7261 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 7e6c0f4f4435abc870eb550d5072bad6 |
.reloc | 1536 | 16968c66d220638496d6b095f21de777 |
.rsrc | 5120 | f0a2e4eed9432882a05c99e5e5d7b04d |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe
