How to remove ChromeAutoApproveTB.dll.vir
- File Details
- Overview
- Analysis
ChromeAutoApproveTB.dll.vir
The module ChromeAutoApproveTB.dll.vir has been detected as Adware.Conduit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
036d1cc5e0ab3be7a55719f29f305558 |
Size: |
152 KB |
First Published: |
2017-06-26 20:05:20 (7 years ago) |
Latest Published: |
2019-06-21 04:26:41 (5 years ago) |
Status: |
Adware.Conduit (on last analysis) |
|
Analysis Date: |
2019-06-21 04:26:41 (5 years ago) |
Overview
%localappdata%\google\chrome\user data\profile 4\extensions\ikgjcmfodgjkcgimppbdnkmdhmepjckc\10.15.0.62_0\plugins |
%localappdata%\google\chrome\user data\profile 1\extensions\mdebcffgnijbblbinknkbefciofebcda\10.15.0.62_0 |
%sysdrive%\adwcleaner\quarantine\c\users\owner\appdata\local\torch\user data\default\extensions\cflheckfmhopnialghigdlggahiomebp\10.15.0.62_0 |
%sysdrive%\adwcleaner\quarantine\c\users\brian\appdata\local\google\chrome\user data\default\extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf\10.15.0.62_0 |
%temp%\scoped_dir_4588_11842\crx_install |
%chromeprofile%\extensions\npiecjlhkngdinoeekmccdbjdgclmnbk\10.15.0.62_0 |
%chromeprofile%\extensions\npiecjlhkngdinoeekmccdbjdgclmnbk\10.15.0.62_0 |
%chromeprofile%\extensions\npiecjlhkngdinoeekmccdbjdgclmnbk\10.15.0.62_0 |
ChromeAutoApproveTB.dll |
ChromeAutoApproveTB.dll.vir |
Argentina |
44.4% |
|
Brazil |
22.2% |
|
Poland |
11.1% |
|
Israel |
11.1% |
|
United States |
11.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x0000cca7 |
Name |
Size of data |
MD5 |
.text |
107008 |
7bc14a096f7003ecc153947dd6b1e929 |
.rdata |
25088 |
de35fb230ae467ee6a97fc95b8edf091 |
.data |
6144 |
b5f2099666a9c79eb65fd143ea36a6c6 |
.rsrc |
1536 |
e8d4b415604c9b0e6f2e63dcb28cb0dc |
.reloc |
8704 |
75f0f75c28809f2e88b6c9de0e295985 |