How to remove Windows 10 RTM _(1).exe
- File Details
- Overview
- Analysis
Windows 10 RTM _(1).exe
The module Windows 10 RTM _(1).exe has been detected as Trojan.Patcher
File Details
Product Name: |
|
Company Name: |
|
MD5: |
bfa1b63cf774e3903b0bf09bebcdabbe |
Size: |
1 MB |
First Published: |
2017-05-29 11:15:51 (7 years ago) |
Latest Published: |
2020-10-20 19:16:44 (4 years ago) |
Status: |
Trojan.Patcher (on last analysis) |
|
Analysis Date: |
2020-10-20 19:16:44 (4 years ago) |
%sysdrive%\windows.old.001\$recycle.bin\s-1-5-21-3556838888-4172444210-3553431391-1001 |
%profile% |
%desktop%\flsh sefede\mohtaviate flash\software |
%sysdrive%\softwares\microsoft office professional plus 2016\windows 10 activetor\windows 10 activetor |
%sysdrive%\microsoft office professional plus 2016\windows 10 activetor\windows 10 activetor |
%sysdrive%\softs\_windows\windows 10\activad0res\crack ; windows 10 |
Windows 10 RTM _.exe |
[FOGUINHO INSTALL] Ativador 4.exe |
Windows 10 RTM _(1).exe |
|
28.6% |
|
|
28.6% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
Windows 10 |
85.7% |
|
Windows 7 |
14.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0019535a |
MVID: |
b58d5d34-3d41-4ed2-931e-1b5152f44c15 |
Typelib ID: |
5e1e0789-00e6-4e32-b57f-b6fe7531b14d |
Name |
Size of data |
MD5 |
.text |
1651712 |
2c5b6c2a1e775fe33aa5eb2388e375e8 |
.reloc |
512 |
5df4f9752ecdc3d34b0893022eb3ef8c |
.rsrc |
103936 |
19824c02c401e1ad7324c0cddd5e8b60 |