How to remove ~wtC70A.tmp.exe
- File Details
- Overview
- Analysis
~wtC70A.tmp.exe
The module ~wtC70A.tmp.exe has been detected as Adware.Gen
File Details
MD5: |
f44cd15826f950b88b3319d80eba2bbc |
Size: |
1 MB |
First Published: |
2017-05-24 13:09:05 (7 years ago) |
Latest Published: |
2020-10-13 06:14:54 (4 years ago) |
Status: |
Adware.Gen (on last analysis) |
|
Analysis Date: |
2020-10-13 06:14:54 (4 years ago) |
Overview
%appdata%\update manager |
%sysdrive%\windows.old\users\joendeb\appdata\local\temp |
%appdata% |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%sysdrive%\file d kena virus\agung beratayasa\appdata\roaming |
UM.EXE |
~wtC70A.tmp.exe |
um.exe |
UM[1].exe |
|
16.0% |
|
|
16.0% |
|
|
8.0% |
|
|
8.0% |
|
|
8.0% |
|
|
8.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
Windows 7 |
44.0% |
|
Windows 10 |
32.0% |
|
Windows Server 2008 R2 |
12.0% |
|
Windows 8.1 |
8.0% |
|
Windows 8 |
4.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000b7387 |
Name |
Size of data |
MD5 |
.text |
909824 |
9a15a8740dad522a0757c614d9c75efe |
.rdata |
235520 |
76acf39fd0b8936bd8d2f59d9bd72132 |
.data |
136192 |
abef3f8785a0ef89c4adf685d241d3e9 |
.rsrc |
126976 |
f66899921be79d634d14733ffe65c6ec |
.reloc |
39936 |
86fe6abb66d76bc96cb12074dd38b1a6 |