How to remove GASender.exe

GASender.exe

The module GASender.exe has been detected as PUP.Auslogics

GASender.exe
Product Name:

Google Analytics Sender

Company Name:

Auslogics

MD5: b60964596cba4ca5ae9e63cfefeee67e
Size: 446 KB
First Published: 2017-05-22 09:04:36 (7 years ago)
Latest Published: 2021-01-10 13:03:32 (4 years ago)
Status: PUP.Auslogics (on last analysis)
Analysis Date: 2021-01-10 13:03:32 (4 years ago)
Signed By: Auslogics Labs Pty Ltd
Status: Valid
%programfiles%\auslogics\disk defrag professional
%temp%\_del_auslogics.disk.defrag.pro.4.7.0.0_soft98.ir
%desktop%\current new\software\portable apps\auslogics disk defrag pro 4.7.0.0 portable\app\diskdefragprofessional
%temp%\_del_setup
%programfiles%\auslogics
%sysdrive%\portable\disk defrag professional\app
%temp%
%programfiles%
%sysdrive%\adwcleaner\quarantine\files\dwjvbpgyjlqluxontntozxjdcavqhfyn
%sysdrive%\descargas\2016\mes 5\210516\sanet me disk defrag\disk defrag professional portable\app
Brazil 22.6%
United States 11.3%
Ukraine 9.4%
Russia 7.5%
Poland 6.6%
Thailand 6.6%
Iran 4.7%
Croatia 4.7%
Vietnam 2.8%
Germany 2.8%
Italy 2.8%
Australia 1.9%
Turkey 1.9%
Bulgaria 1.9%
Lithuania 0.9%
Romania 0.9%
New Zealand 0.9%
France 0.9%
Czech Republic 0.9%
United Kingdom 0.9%
Japan 0.9%
Spain 0.9%
Netherlands 0.9%
India 0.9%
Sri Lanka 0.9%
Switzerland 0.9%
Armenia 0.9%
Windows 10 43.4%
Windows 7 41.5%
Windows 8.1 14.2%
Windows Embedded Standard 0.9%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00067aa0

PE Sections:

Name Size of data MD5
.text 415232 4267ed87d0852f258eca66284d4c05ad
.itext 3072 58e1a9376675f12af4770d3dcdf1ce98
.data 12800 5a6fb9b64378f5db08bf5a4f63424d0c
.bss 0 00000000000000000000000000000000
.idata 5120 882c14d49d82f25a4c388b2927165c4a
.didata 512 74b586f6a618f9fd2d20010b4241bd0d
.tls 0 00000000000000000000000000000000
.rdata 512 da061ba29a874315be8f56ed0dc91897
.rsrc 12288 342515afd7f9ae59dc032b73b8d5e5df

More information:

Download GridinSoft Anti-Malware - Removal tool for GASender.exe
­