How to remove AdSafeBrowsing.dll
- File Details
- Overview
- Analysis
AdSafeBrowsing.dll
The module AdSafeBrowsing.dll has been detected as Adware.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
4cbf471a7b1715036bd4ca8caecfa4df |
Size: |
1 MB |
First Published: |
2017-05-29 11:12:11 (7 years ago) |
Latest Published: |
2019-06-16 09:48:01 (5 years ago) |
Status: |
Adware.Downloader (on last analysis) |
|
Analysis Date: |
2019-06-16 09:48:01 (5 years ago) |
Overview
%localappdata%\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.5_0\binaries\win |
%localappdata%\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.2_0\binaries\win |
%temp%\scoped_dir_4216_27585\crx_install\binaries\win |
%sysdrive%\adwcleaner\quarantine\3solbph71y\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.5_0\binaries |
%localappdata%\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.5_0\binaries |
%localappdata%\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.2_0\binaries |
%localappdata%\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.5_0\binaries |
%localappdata%\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.5_0\binaries |
%sysdrive%\windows.old\users\mbargash.jouf\appdata\local\catalinagroup\citrio\user data\default\extensions\kffhmkdleanehaigkpknpdolaokhflpn\0.5.5_0\binaries |
|
47.8% |
|
|
13.0% |
|
|
8.7% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
Windows 7 |
68.2% |
|
Windows 10 |
27.3% |
|
Windows 8.1 |
4.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00082399 |
Name |
Size of data |
MD5 |
.text |
706560 |
27dc0c6c27f8d670147aa56fc195ee29 |
.rdata |
263680 |
9c3ae6af31332790ae0e63cf6242f299 |
.data |
75264 |
6f58a75141fa5f3d7d9a087609b2f98a |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
8704 |
b0e6370791f38333080748af919b34c5 |
.reloc |
52224 |
e89e2c63444cdb4e5f6440d24035b2e6 |