How to remove setup.exe
setup.exe
The module setup.exe has been detected as Trojan.CoinMiner
File Details
MD5: | b246c6b8a4cec2b7720b3f24f9401307 |
Size: | 424 KB |
First Published: | 2017-10-19 05:04:29 (7 years ago) |
Latest Published: | 2020-06-25 18:14:17 (4 years ago) |
Status: | Trojan.CoinMiner (on last analysis) | |
Analysis Date: | 2020-06-25 18:14:17 (4 years ago) |
Overview
Signed By: | Xerox Corporation |
Status: | Valid |
Common Places:
%appdata%\temp\xerox\printbackinstaller |
%appdata%\temp\xerox |
%appdata%\temp\xerox |
%appdata%\temp\xerox |
%appdata%\temp\xerox |
Geography:
42.9% | ||
28.6% | ||
14.3% | ||
14.3% |
OS Version:
Windows 10 | 57.1% | |
Windows 8.1 | 28.6% | |
Windows 7 | 14.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0002e541 |
PE Sections:
Name | Size of data | MD5 |
.text | 322048 | 2ad6c906cf4d5c3e80c7d49c00cb37dd |
.data | 7168 | 702d35966270236821c2e1680f7c273c |
.rsrc | 79360 | 5d4b8438369efa5b2247fb2d2c3e5bda |
.reloc | 18432 | 19fc23410250bcf3a829c2565063dff5 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe