How to remove AskPIP_FF_.exe
- File Details
- Overview
- Analysis
AskPIP_FF_.exe
The module AskPIP_FF_.exe has been detected as PUP.Ask
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d3fbbf2b69bed84c148495ee64edcbbe |
Size: |
848 KB |
First Published: |
2017-05-30 21:07:26 (7 years ago) |
Latest Published: |
2020-06-06 19:09:36 (4 years ago) |
Status: |
PUP.Ask (on last analysis) |
|
Analysis Date: |
2020-06-06 19:09:36 (4 years ago) |
Overview
%localappdata%\temp |
%temp% |
%sysdrive%\windows.old\users\khaled h.bayoumi\appdata\local |
%profile%\ad.armoire.000\local settings |
%temp% |
%sysdrive%\windows.old.000\users\linkinrulez\appdata\local |
%sysdrive%\windows.old\users\linkinrulez\appdata\local |
%temp% |
|
19.0% |
|
|
14.3% |
|
|
14.3% |
|
|
9.5% |
|
|
9.5% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
Windows 7 |
71.4% |
|
Windows 10 |
14.3% |
|
Windows 8.1 |
9.5% |
|
Windows XP |
4.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0006bd14 |
Name |
Size of data |
MD5 |
.text |
567296 |
a17a25dff96f40e479805ad3ef7ee8d2 |
.rdata |
128000 |
293d96bf7f5b226403cd59a63847aa62 |
.data |
22528 |
8cd7dfd7efcdb8aad2e69001332b06fd |
.rsrc |
98816 |
3b8bf5ddc42b7a2f699693f54a907932 |
.reloc |
44032 |
8547de59372d648664eb0b53a500b553 |