How to remove OCSetupHlp.dll
- File Details
- Overview
- Analysis
OCSetupHlp.dll
The module OCSetupHlp.dll has been detected as PUP.OpenCandy
File Details
Product Name: |
|
Company Name: |
|
MD5: |
670013b656852e6401c9fd135fb03bad |
Size: |
848 KB |
First Published: |
2017-07-18 10:13:23 (7 years ago) |
Latest Published: |
2020-02-15 00:15:04 (5 years ago) |
Status: |
PUP.OpenCandy (on last analysis) |
|
Analysis Date: |
2020-02-15 00:15:04 (5 years ago) |
Overview
Signed By: |
OpenCandy Inc. |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%temp%\is-a5ir0.tmp |
%temp%\is-ukag9.tmp |
%temp%\is-9qr2l.tmp |
%temp%\is-b6ck9.tmp |
%temp%\is-fgtij.tmp |
%temp%\is-i928g.tmp |
%temp%\is-ourcr.tmp |
%temp% |
%sysdrive%\windows.old\users\liceo1\appdata\local\temp |
|
40.9% |
|
|
27.3% |
|
|
13.6% |
|
|
4.5% |
|
|
4.5% |
|
|
4.5% |
|
|
4.5% |
|
Windows 7 |
81.8% |
|
Windows Vista |
9.1% |
|
Windows 8.1 |
4.5% |
|
Windows 10 |
4.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x0006e2a4 |
Name |
Size of data |
MD5 |
.text |
593408 |
410d7a847d6ac852524940fb42cd1445 |
.rdata |
201216 |
c7ec38c6cd119a1563d110bf40c8d0a7 |
.data |
11264 |
b72e776832252f7c566a9055f66e5bb0 |
.rsrc |
18944 |
357ed737d98ed35de46adbddf9790f3b |
.reloc |
36864 |
dd7017ff5992de684ef62e276c52a47f |