How to remove setup.exe
setup.exe
The module setup.exe has been detected as Trojan.Heur!
File Details
| Product Name: | Brave Installer |
| Company Name: | Brave Software, Inc. |
| MD5: | ce56e50a8b22baae63c94d4ee8817ffa |
| Size: | 3 MB |
| First Published: | 2023-07-21 23:31:52 (2 years ago) |
| Latest Published: | 2023-07-23 23:25:30 (2 years ago) |
| Status: | Trojan.Heur! (on last analysis) | |
| Analysis Date: | 2023-07-23 23:25:30 (2 years ago) |
Common Places:
| %programfiles%\bravesoftware\brave-browser\application\115.1.56.11 |
| %programfiles%\bravesoftware\brave-browser\application\115.1.56.11 |
| %programfiles%\bravesoftware\brave-browser\application\115.1.56.11 |
| %programfiles%\bravesoftware\brave-browser\application\115.1.56.11 |
| %programfiles%\bravesoftware\brave-browser\application\115.1.56.11 |
| %programfiles%\bravesoftware\brave-browser\application\115.1.56.11 |
Geography:
| 33.3% | ||
| 33.3% | ||
| 33.3% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x001e6b70 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 3035136 | e2474abf27929ab8f51a6e3795341fb6 |
| .rdata | 432128 | bf6b88e830dc9a860a852382d5443caf |
| .data | 69632 | c3dcc0740d867c683a4e97b5dff2fa22 |
| .pdata | 81920 | 4d21f12787ec6e9db44279c24e23c235 |
| .00cfg | 512 | c974919b5d871c665a5e9f330cb77945 |
| .gxfg | 12800 | 7bfc7eac5b82fde698a6b554e8638620 |
| .retplne | 512 | 530ca61035fc330e64c50d043dcea74a |
| .rodata | 2560 | ab11c2f1f3e2891d57cda3465c6cdfae |
| .tls | 1024 | f3dc28b3be1ca42f4f61c3c9816c882a |
| CPADinfo | 512 | 60d3ea61d541c9be2e845d2787fb9574 |
| LZMADEC | 4608 | 05e9eab8428a551a281ab278073669fa |
| _RDATA | 512 | 57ffa86c4be4988a563c042d4ae5dd00 |
| malloc_h | 512 | bf6e839df7c68ae1496ba908f633e0e7 |
| .rsrc | 300544 | be3f3edb78ae6a08e85942f516750a76 |
| .reloc | 10752 | 67f0ced76e50ca0d84d9c7496b20a4df |
More information:
Download GridinSoft
Anti-Malware - Removal tool for setup.exe