How to remove E3D7F039512298EB.vir

E3D7F039512298EB.vir

The module E3D7F039512298EB.vir has been detected as Adware.SweetIM

E3D7F039512298EB.vir
MD5: 7787f971de6c0bbacbe29ad14829d933
Size: 42 MB
First Published: 2017-05-22 02:08:57 (6 years ago)
Latest Published: 2024-04-18 23:06:27 (2 weeks ago)
Status: Adware.SweetIM (on last analysis)
Analysis Date: 2024-04-18 23:06:27 (2 weeks ago)
Signed By: SweetLabs Inc.
Status: Valid
%localappdata%\host app service\engine
%sysdrive%\adwcleaner\quarantine\files\ozasauktordlmukypcuyexkzbfzvpsvl\engine
%sysdrive%\adwcleaner\quarantine\files\iwenoytwgioqipcdaaftjpietpbpnddz\engine
%sysdrive%\adwcleaner\quarantine\files\ynnitchuggopbibaswmmznsgrmxoaqil\engine
%sysdrive%\adwcleaner\quarantine\jbdt3hvofo\engine
%sysdrive%\adwcleaner\quarantine\smlaztxc1o\engine
%sysdrive%\adwcleaner\quarantine\x3cf3ednhm\engine
%sysdrive%\adwcleaner\quarantine\1xvpfvjcrg\engine
%sysdrive%\adwcleaner\quarantine\fraqbc8wsa\engine
%sysdrive%\adwcleaner\quarantine\rywtiizs2t\engine
libPokki.dll
libPokki (1).dll
libPokki.dll#092426B767850E57
E3D7F039512298EB.vir
14.0%
8.8%
7.1%
7.1%
6.7%
5.0%
3.5%
3.4%
3.1%
2.9%
2.5%
1.9%
1.9%
1.7%
1.6%
1.5%
1.5%
1.4%
1.4%
1.3%
1.2%
1.2%
1.2%
1.2%
1.1%
1.0%
1.0%
0.8%
0.8%
0.8%
0.8%
0.7%
0.7%
0.6%
0.6%
0.5%
0.5%
0.4%
0.4%
0.4%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
Windows 10 99.3%
Windows 8 0.7%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x10000000
Entry Address: 0x015a0ed3

PE Sections:

Name Size of data MD5
.text 35776512 f581610492ed081fea86f452d89cda14
.rdata 6891008 5975acda25b912ca7e1be860f1ac2769
.data 295936 dfdbc3cccb7127e2f1e7c6b71951616d
.unwante 4096 d9e6c587aa9686b625fa3723226ed688
.rodata 3072 b28368d27f2dc1ebb0beed51469d4642
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 512 955fc3a5fd43d56c8c5ee044a6c5b1f2
.reloc 1767424 91c239d7b1008db8fe3e28cfa96c1f2b

More information:

Download GridinSoft Anti-Malware - Removal tool for E3D7F039512298EB.vir