How to remove setup94687.exe
- File Details
- Overview
- Analysis
setup94687.exe
The module setup94687.exe has been detected as Trojan.Downloader
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
29d3a70cec060614e1691e64162a6c1e |
| Size: |
3 MB |
| First Published: |
2023-06-14 23:06:00 (2 years ago) |
| Latest Published: |
2025-10-21 23:01:03 (3 weeks ago) |
| Status: |
Trojan.Downloader (on last analysis) |
|
| Analysis Date: |
2025-10-21 23:01:03 (3 weeks ago) |
Overview
| %localappdata% |
| %localappdata% |
| %localappdata% |
| %sysdrive%\frst\quarantine\c\users\jay\appdata |
| %sysdrive%\frst\quarantine\c\users\jay\appdata |
| %localappdata% |
| %sysdrive%\frst\quarantine\c\users\jay\appdata |
| %localappdata% |
| %localappdata% |
| %localappdata% |
|
30.3% |
|
|
11.3% |
|
|
6.9% |
|
|
6.2% |
|
|
3.3% |
|
|
3.3% |
|
|
2.9% |
|
|
2.6% |
|
|
2.6% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.5% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
| Windows 10 |
99.3% |
|
| Windows 8.1 |
0.4% |
|
| Windows 7 |
0.4% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x003d2f4e |
| MVID: |
c54cd61c-c373-42ba-534b-4eea3ebf36e6 |
| Typelib ID: |
cc4a4317-de12-47d0-9faf-8425aa435e68 |
| Name |
Size of data |
MD5 |
| .text |
4001792 |
d0ec5a97688d9fc811b74831bc15da3f |
| .rsrc |
3072 |
17a693dfac78d0acd4c566edcad7c022 |
| .reloc |
512 |
72ab3d7b029f3c858c1add431f227403 |