How to remove Offer1.exe
Offer1.exe
The module Offer1.exe has been detected as PUP.WinThruster
File Details
Product Name: | WinThruster |
Company Name: | Solvusoft Corporation |
MD5: | 8ad357c058148c37d4d36133b6f76808 |
Size: | 8 MB |
First Published: | 2017-05-24 11:10:58 (7 years ago) |
Latest Published: | 2020-07-07 14:40:31 (4 years ago) |
Status: | PUP.WinThruster (on last analysis) | |
Analysis Date: | 2020-07-07 14:40:31 (4 years ago) |
Overview
Signed By: | Installer Wizard |
Status: | Valid |
Common Places:
%temp%\nsk9694.tmp |
%programfiles%\panda security\panda security protection\oggettismarriti |
%temp%\nsmba8a.tmp |
%temp%\nsiddb8.tmp |
%temp%\nsk744.tmp |
%temp%\nsqcd20.tmp |
%temp%\nsw1222.tmp |
%temp%\nsq9386.tmp |
%temp%\nsq4a98.tmp |
%temp%\nsm943e.tmp |
Geography:
17.8% | ||
15.6% | ||
11.1% | ||
8.9% | ||
6.7% | ||
6.7% | ||
6.7% | ||
6.7% | ||
6.7% | ||
4.4% | ||
4.4% | ||
2.2% | ||
2.2% |
OS Version:
Windows 7 | 56.5% | |
Windows 10 | 21.7% | |
Windows 8.1 | 8.7% | |
Windows Vista | 8.7% | |
Windows 8 | 4.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00021bd6 |
PE Sections:
Name | Size of data | MD5 |
.text | 183296 | 08b1425d0c235f73ec2fd58abfe6486d |
.rdata | 36864 | 2493c37a97f6e172b3dd001b1af0d594 |
.data | 9216 | 5b956e9eb3e2cde75a854ea16ed7c543 |
.rsrc | 209920 | 90c92cde040e916db58f6b44ce82085c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Offer1.exe