Set-up.exe Trojan Packed Analysis

Trojan Packed
Updated on 2024-06-29 (1 day ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.181.174
DB Version:2024-06-29 04:00:20

Trojan.Win64.Packed.sa

Packing is a common tactic used by malware authors to make their malicious code more difficult to analyze and detect by antivirus and security programs. These techniques involve compressing, encrypting, or otherwise altering the malware's code to make it appear different from its original form. The goal is to hide the true nature of the malware from security tools.

FileSet-up.exe
Checked2024-06-29 01:49:03
MD5b3631a210f402b47109fcc15ff658035
SHA1b09657d9a8548964ad4b2f22c69a4bdddc12a57d
SHA256fb7130dc6eadfb291e83a988ff4c2e64dd8ec019310be271b1e53597504b5a54
SHA5129823e97d9c680b960ad4d7faa3b87aad2da3a35749ee857fb78a343eb106184b23ec543decd570b8c750a1c4c9df4c81d8e12311ba0e0351dfff48c804ee6619
Imphash1af6c885af093afc55142c2f1761dbe8
File Size7254835 bytes

Trojan.Win64.Packed.sa Removal

Trojan.Win64.Packed.sa Removal

Gridinsoft has the capability to identify and eliminate Trojan.Win64.Packed.sa without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

CompanyNameMicrosoft Corporation
FileDescriptionMicrosoft Management Console
FileVersion10.0.19041.3758 (WinBuild.160101.0800)
InternalNamemmc.exe
LegalCopyright© Microsoft Corporation. All rights reserved.
OriginalFilenamemmc.exe
ProductNameMicrosoft® Windows® Operating System
ProductVersion10.0.19041.3758
Translation0x0409 0x04b0

Portable Executable Info

dd09a2b518729ea51224302630667d5d
9d8710f12dfb9ba015e1abb1627218a4
6579556d6d6d5145
Image Base:0x140000000
Entry Point:0x14000c1f0
Compilation:2024-06-26 13:12:50
Checksum:0x006f081e (Actual: 0x006f8961)
OS Version:5.2
PEiD:PE32+ executable (GUI) x86-64, for MS Windows
Sign:The expected hash does not match the digest in SpcInfo
Sections:7
Imports: USER32, COMCTL32, KERNEL32, ADVAPI32, GDI32,
Exports: 0
Resources:10

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x00029c90 0x00029e00 62616acf257019688180f494b4eb78d4 6.48
.rdata 0x0002b000 0x00012bf4 0x00012c00 ed1885fd98960110715b9d518c1334c1 5.84
.data 0x0003e000 0x00003338 0x00000e00 99d84572872f2ce8d9bdbc2521e1966e 1.83
.pdata 0x00042000 0x000022a4 0x00002400 39f0a7d8241a665fc55289b5f9977819 5.32
_RDATA 0x00045000 0x0000015c 0x00000200 624222957a635749731104f8cdf6f9b7 2.83
.rsrc 0x00046000 0x00009e04 0x0000a000 1c35cfac41060a4b13cfc523dee4c88b 7.92
.reloc 0x00050000 0x0000075c 0x00000800 4138d4447f190c2657ec208ef31be551 5.24

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware