How to remove ChromeApproveTBPlugin.dll
- File Details
- Overview
- Analysis
ChromeApproveTBPlugin.dll
The module ChromeApproveTBPlugin.dll has been detected as Adware.Conduit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
db23b280d74a377eba1cb5593489790a |
Size: |
114 KB |
First Published: |
2018-02-04 14:02:52 (7 years ago) |
Latest Published: |
2020-12-18 14:30:05 (4 years ago) |
Status: |
Adware.Conduit (on last analysis) |
|
Analysis Date: |
2020-12-18 14:30:05 (4 years ago) |
Overview
%localappdata%\torch\user data\default\extensions\plmlpkfpkijnlijgalnjaacllnjmoamo\10.16.4.512_0 |
%sysdrive%\kanakyjam-pc\backup set 2013-07-22 095255\backup files 2013-07-22 095255\backup files 16.zip\c\users\kanakyjam\appdata\local\google\chrome\user data\default\extensions\ehdmaehkiiampolokajdcelladmnopgp\10.16.4.512_0 |
%sysdrive%\wd smartware.swstor\valerie-pc\volume.731a8586.e12d.11e2.9fe1.806e6f6e6963\backup\users\valerie\appdata\local\google\chrome\user data\default\extensions\klibnahbojhkanfgaglnlalfkgpcppfi\10.16.4.512_0 |
%sysdrive%\diverse 2017\recovered data 10-17-2017 at 15_01_08\more lost files\zip compression file\file210.zip\c\users\dbs bürotechnik\appdata\local\google\chrome\user data\default\extensions\kjjpeodeilefdpblgopdaoojammobcaf\10.16.4.12_0 |
%sysdrive%\diverse 2017\recovered data 10-17-2017 at 15_01_08\more lost files\zip compression file\file210.zip\c\users\dbs bürotechnik\appdata\local\google\chrome\user data\default\extensions\kjjpeodeilefdpblgopdaoojammobcaf\10.16.4.512_0 |
%sysdrive%\diverse 2017\recovered data 10-17-2017 at 15_01_08\more lost files\zip compression file\file210.zip\c\users\dbs bürotechnik\appdata\local\google\chrome\user data\default\extensions\boalolmjphaheejepjcjcpngbeimiend\10.16.4.512_0 |
%sysdrive%\diverse 2017\recovered data 10-17-2017 at 15_01_08\more lost files\zip compression file\file210.zip\c\users\dbs bürotechnik\appdata\local\google\chrome\user data\default\extensions\boalolmjphaheejepjcjcpngbeimiend\10.16.4.12_0 |
%chromeprofile%\extensions\gpaiibklhaneknloaoccoidbaffjjlnb\10.16.4.12_0 |
%profile%\ser\local settings\application data\comodo\dragon\user data\default\extensions\ghbpnpdjdojkmkjjcmnmnmkdldffjjnl\10.16.4.12_0 |
%profile%\ser\local settings\application data\google\chrome\user data\default\extensions\ghbpnpdjdojkmkjjcmnmnmkdldffjjnl\10.16.4.12_1 |
|
24.0% |
|
|
20.0% |
|
|
16.0% |
|
|
16.0% |
|
|
12.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
Windows 10 |
52.0% |
|
Windows 7 |
20.0% |
|
Windows XP |
16.0% |
|
Windows Vista |
8.0% |
|
Windows 8.1 |
4.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00006e78 |
Name |
Size of data |
MD5 |
.text |
72704 |
6d199d249fe504b3c53b7e31034b1ca3 |
.rdata |
21504 |
3bbb55750da44b270b519d37f8dd18f6 |
.data |
5632 |
1f382a57a2d6a9904cf5d023160a1629 |
.rsrc |
1536 |
26aa818af9e26331cbc0b20af253ee1c |
.reloc |
8192 |
75038f024758d8e1a0768e00c1ef3e22 |