How to remove FSCrossHair.exe
- File Details
- Overview
- Analysis
FSCrossHair.exe
The module FSCrossHair.exe has been detected as Trojan.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
608cb8717e16892f04010cd81d88219d |
Size: |
409 KB |
First Published: |
2022-10-11 23:04:49 (2 years ago) |
Latest Published: |
2023-10-03 23:12:40 (2 years ago) |
Status: |
Trojan.Downloader (on last analysis) |
|
Analysis Date: |
2023-10-03 23:12:40 (2 years ago) |
%profile%\downloads\fscapture94 |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%profile%\downloads\faststone capture 9.4 + portable.zip\faststone capture 9.4 + portable\portable\app |
%profile%\downloads\compressed\fscaptur90_portable_sigma-4pc.com.rar\fscaptur90_portable_sigma-4pc.com |
%profile%\downloads\compressed\fscaptur90_portable_sigma-4pc.com |
%sysdrive%\windows.old\users\hp\appdata\local\temp\rar$exa3324.9761\fscaptur90_portable_sigma-4pc.com |
%programfiles% |
|
40.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
Windows 10 |
90.0% |
|
Windows 7 |
10.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00059ab4 |
Name |
Size of data |
MD5 |
CODE |
364032 |
88c83c711920db8d9c1623a844768ed1 |
DATA |
4608 |
22e8cb6e03333c0492caf2c1a421c31e |
BSS |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.idata |
8704 |
aa8d361adb5d63375cc1356e07b2f604 |
.tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.rdata |
512 |
542f1cfb193cf6e6842ab065c581323c |
.reloc |
24064 |
14e4313f0ca7aae0b27a74366bc68152 |
.rsrc |
16384 |
03f2c955982d6057bfb337c587ca98a9 |