How to remove $REY1OBY.tmp
- File Details
- Overview
- Analysis
$REY1OBY.tmp
The module $REY1OBY.tmp has been detected as PUP.Uniblue
File Details
MD5: |
dd4b45b57703b48f751e028d2ee2bcd3 |
Size: |
1 MB |
First Published: |
2017-05-21 07:08:39 (7 years ago) |
Latest Published: |
2018-08-13 22:06:59 (6 years ago) |
Status: |
PUP.Uniblue (on last analysis) |
|
Analysis Date: |
2018-08-13 22:06:59 (6 years ago) |
Overview
%programfiles%\uniblue\pc-mechanic |
%sysdrive%\adwcleaner\quarantine\files\tbayxmlhxahletwwrgsznojjoglavnis\pc-mechanic |
%sysdrive%\$recycle.bin\s-1-5-21-2211356762-525768303-2238189875-1001 |
%localappdata%\temp |
%programfiles%\uniblue |
unins000.exe |
$REY1OBY.tmp |
_iu14D2N.tmp |
_iu14D2O.tmp |
|
30.0% |
|
|
20.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
Windows 10 |
90.0% |
|
Windows 7 |
10.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00100004 |
Name |
Size of data |
MD5 |
.text |
1037312 |
69351d25c67a0d26ae98293518b48c7b |
.itext |
5120 |
6af5b74ebcd128d62db3adf99a2fdade |
.data |
12800 |
e451917917f4a9d9e9f972f25b034fdf |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
14848 |
43c0f118777059b21ad6a5849b132450 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
3f4821d98c8d2f792b0e23905609a7d6 |
.rsrc |
298496 |
68b4557c77f7e52afddca6cf7840fffe |