How to remove wininst-6.0.exe
- File Details
- Overview
- Analysis
wininst-6.0.exe
The module wininst-6.0.exe has been detected as Virus.Neshta
File Details
| MD5: |
7e4414943f4e731cb696b60d75906dca |
| Size: |
100 KB |
| First Published: |
2017-08-28 02:06:47 (8 years ago) |
| Latest Published: |
2024-12-07 23:03:28 (10 months ago) |
| Status: |
Virus.Neshta (on last analysis) |
|
| Analysis Date: |
2024-12-07 23:03:28 (10 months ago) |
| %programfiles%\kodi\system\python\lib\distutils\command |
| %programfiles%\tc up\plugins\media\inkscape\bin\inkscape\python\lib\distutils\command |
| %programfiles%\tc up\plugins\media\gimp\bin\gimp\python\lib\distutils\command |
| %programfiles%\openoffice 4\program\python-core-2.7.6\lib\distutils |
| %programfiles%\kodi\system\python\lib\distutils |
| %programfiles%\dev-cpp\mingw64\bin\lib\distutils |
| %localappdata%\programs\python\python36-32\lib\distutils |
| %programfiles%\openoffice 4\program_old\python-core-2.7.5\lib\distutils |
| %localappdata%\sharepal\lib\distutils |
| %sysdrive%\portableapps\gimpportable\app\gimp\python\lib\distutils |
|
12.5% |
|
|
8.3% |
|
|
8.3% |
|
|
8.3% |
|
|
8.3% |
|
|
8.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
4.2% |
|
|
4.2% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
| Windows 10 |
50.0% |
|
| Windows 7 |
31.3% |
|
| Windows 8.1 |
12.5% |
|
| Windows Server 2008 R2 |
2.1% |
|
| Windows Server 2016 |
2.1% |
|
| Windows 8 |
2.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000080e4 |
| Name |
Size of data |
MD5 |
| CODE |
29696 |
ca3464d4f08c9010e7ffa2fe3e890344 |
| DATA |
1024 |
7ffc3168a7f3103634abdf3a768ed128 |
| BSS |
0 |
00000000000000000000000000000000 |
| .idata |
2560 |
6e7a45521bfca94f1e506361f70e7261 |
| .tls |
0 |
00000000000000000000000000000000 |
| .rdata |
512 |
7e6c0f4f4435abc870eb550d5072bad6 |
| .reloc |
1536 |
16968c66d220638496d6b095f21de777 |
| .rsrc |
5120 |
0bda792e1a4385a8c5dce49ce9bdec9e |