How to remove APISupport.old
- File Details
- Overview
- Analysis
APISupport.old
The module APISupport.old has been detected as Adware.Conduit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d9cb22e27d7adcfb86f53a0a1eb5c05b |
Size: |
740 KB |
First Published: |
2017-06-27 00:03:28 (6 years ago) |
Latest Published: |
2020-11-16 13:46:50 (3 years ago) |
Status: |
Adware.Conduit (on last analysis) |
|
Analysis Date: |
2020-11-16 13:46:50 (3 years ago) |
Overview
%localappdata%\conduit\apisupport\apisupport_2.0.4.3 |
%localappdata%\conduit\apisupport |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\bq3ykssb |
%localappdata%\conduit |
%sysdrive%\adwcleaner\quarantine\c\users\owner\appdata\local\conduit |
%sysdrive%\adwcleaner\quarantine\c\users\owner\appdata\local\conduit\apisupport |
%sysdrive%\adwcleaner\quarantine\files\qjxwzoahcdffaaizgfsvatdhfwqfseql |
%localappdata%\conduit |
%localappdata%\conduit\apisupport |
ApiSupport.dll |
APISupport.old |
APISupport[3].dll |
APISupport.dll |
APISupport.old.vir |
ApiSupport.dll.vir |
|
33.3% |
|
|
16.7% |
|
|
16.7% |
|
|
16.7% |
|
|
8.3% |
|
|
8.3% |
|
Windows 7 |
66.7% |
|
Windows 10 |
33.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00074ce8 |
Name |
Size of data |
MD5 |
.text |
591872 |
b40ee9ca8b285e7ce62888d522de668a |
.rdata |
96256 |
2f83fee97ad2f7743d6d9f6fb5f29628 |
.data |
8192 |
9ea6b7730690fa6578b967a27dfd24de |
.rsrc |
1536 |
763578d58b4ab15a8076a364319cb9a5 |
.reloc |
53248 |
4d7ab8b0ff1fdea3e81b3abbf5b25e77 |