How to remove 1_Offer_7.exe
- File Details
- Overview
- Analysis
1_Offer_7.exe
The module 1_Offer_7.exe has been detected as Adware.Strongvault
File Details
Product Name: |
|
MD5: |
ac1e1fe274c2ba03427c4003c196d7f9 |
Size: |
203 KB |
First Published: |
2017-07-24 17:04:58 (7 years ago) |
Latest Published: |
2020-10-11 23:17:59 (4 years ago) |
Status: |
Adware.Strongvault (on last analysis) |
|
Analysis Date: |
2020-10-11 23:17:59 (4 years ago) |
Overview
%temp%\9fd4b280-27cc-46d8-9fb2-78cc895837f0\software |
%sysdrive%\old hd\users\fferguson\appdata\local\temp |
%sysdrive%\windows.old\users\cliente\appdata\local\temp |
%temp% |
%localappdata% |
%localappdata% |
%localappdata% |
%profile%\wner\local settings\application data |
DesktopWeatherAlertsSetup.exe |
1_Offer_7.exe |
DesktopWeatherAlertsSetup[1].exe |
Windows 7 |
44.4% |
|
Windows 10 |
44.4% |
|
Windows XP |
11.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000323c |
Name |
Size of data |
MD5 |
.text |
23552 |
c3953c262c50b3d94af076321878ec20 |
.rdata |
4608 |
f179218a059068529bdb4637ef5fa28e |
.data |
1024 |
8304967a23ff32b1b0197005a845ef83 |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
113152 |
ae610b36c4ef9c1970f4f77f224bff1e |