How to remove setup.exe
setup.exe
The module setup.exe has been detected as Trojan.Dropper
File Details
Product Name: | TheWorld Installer |
Company Name: | The TheWorld Authors |
MD5: | 86fb4cc5f8f2c4cf321e32cfd058274d |
Size: | 1 MB |
First Published: | 2017-07-07 16:02:43 (6 years ago) |
Latest Published: | 2020-07-27 18:11:51 (3 years ago) |
Status: | Trojan.Dropper (on last analysis) | |
Analysis Date: | 2020-07-27 18:11:51 (3 years ago) |
Overview
Signed By: | 北京世界星辉科技有限责任公司 |
Status: | Valid |
Common Places:
%localappdata%\theworld6\application\7.0.0.108\installer |
%profile%\j\ustawienia lokalne\dane aplikacji\theworld6\application\7.0.0.108\installer |
%localappdata%\theworld6\application\7.0.0.108 |
%profile%\g\ustawienia lokalne\dane aplikacji\theworld6\application\7.0.0.108 |
%localappdata%\theworld6\application\7.0.0.108 |
%localappdata%\theworld6\application\7.0.0.108 |
%localappdata%\theworld6\application\7.0.0.108 |
%localappdata%\theworld6\application\7.0.0.108 |
Geography:
23.1% | ||
19.2% | ||
15.4% | ||
11.5% | ||
7.7% | ||
3.8% | ||
3.8% | ||
3.8% | ||
3.8% | ||
3.8% | ||
3.8% |
OS Version:
Windows 10 | 57.7% | |
Windows 7 | 19.2% | |
Windows XP | 11.5% | |
Windows Server 2008 R2 | 7.7% | |
Windows Server 2012 R2 | 3.8% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000a6ba2 |
PE Sections:
Name | Size of data | MD5 |
.text | 819200 | 0e7dc3aed889743c9b49c2e4e312ce99 |
.rdata | 227328 | 91167ac74c2d9a73c2a6d5b7d5d4c5cf |
.data | 15872 | c9e07c9d9d326b80a3e0e48dbecdc9ba |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rsrc | 211456 | 8f4fca537014691976ba1d8cbcac4f43 |
.reloc | 46080 | 44bbec2a3b262e6dee5f3454acf491a9 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe