How to remove NuclearCoffeeRecoverKeys.exe
- File Details
- Overview
- Analysis
NuclearCoffeeRecoverKeys.exe
The module NuclearCoffeeRecoverKeys.exe has been detected as Adware.OpenCandy
File Details
Product Name: |
|
Company Name: |
|
MD5: |
09a1bbdf95dfc9646f212ed1d0590ea8 |
Size: |
21 MB |
First Published: |
2020-11-18 14:23:47 (4 years ago) |
Latest Published: |
2024-10-16 23:01:09 (8 months ago) |
Status: |
Adware.OpenCandy (on last analysis) |
|
Analysis Date: |
2024-10-16 23:01:09 (8 months ago) |
Overview
Signed By: |
ONE UP LTD. |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%temp%\dlc1temp |
%sysdrive%\local\dlc boot 2016 v3.1 final\dlc1\programs\windows\files |
%sysdrive%\d\[fullcr@ck.vn]dlc_b00t_2017_v3.4_fin@l\data fullcrack.vn\0\1\2\3\4\5\6\7\8\9\dlc1\programs\windows\files |
%sysdrive%\cloud mail.ru\# destek\# format program\#- lisanslı program keyleri gör\recovery keys 9.0.3 -intifada1453.rar\recover keys 9\recover-keys-enterprise\crack |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x009a2e90 |
Name |
Size of data |
MD5 |
.text |
10076160 |
3c8b28fe82811b3db32d3542999d44d3 |
.itext |
24576 |
3c9739b1ea051ed641598e6765358f02 |
.data |
364032 |
565426a20ffaeac29badba2e5003d6f0 |
.bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.idata |
22528 |
a027b05df32d8f620514952ec993735e |
.didata |
2560 |
b2fe60acb6c8d174525741e61b71b58a |
.tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.rdata |
512 |
4033fe17b91e50435d25377ea81d61ad |
.reloc |
849408 |
f3e2655e98f6f491a8a6415a994493f0 |
.rsrc |
10908672 |
13c0bc028081288d52d78cc0487b6ed3 |