How to remove Offer1.exe
Offer1.exe
The module Offer1.exe has been detected as PUP.Systweak
File Details
Product Name: | WinThruster |
Company Name: | solvusoft Corporation |
MD5: | a15286f8993b4d91b75450cd8f121355 |
Size: | 3 MB |
First Published: | 2017-05-24 16:11:23 (7 years ago) |
Latest Published: | 2018-11-16 15:11:09 (6 years ago) |
Status: | PUP.Systweak (on last analysis) | |
Analysis Date: | 2018-11-16 15:11:09 (6 years ago) |
Overview
Signed By: | Installer Genius (Solvusoft Corporation) |
Status: | Valid |
Common Places:
%profile%\downloads |
%profile% |
%sysdrive%\pc transfer |
%temp% |
%programfiles%\panda security\panda security protection |
File Names:
Setup_WinThruster_2016.exe |
Offer1.exe |
Primary.exe |
Geography:
30.0% | ||
20.0% | ||
10.0% | ||
10.0% | ||
10.0% | ||
10.0% | ||
10.0% |
OS Version:
Windows 7 | 45.5% | |
Windows 10 | 27.3% | |
Windows 8.1 | 27.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00016478 |
PE Sections:
Name | Size of data | MD5 |
.text | 82944 | 824e3957006b0613ed9c53ada45c1db3 |
.itext | 3072 | a1e7b318e1115c7a9aaa4dee97b67e4b |
.data | 3584 | 00abeb3340a427c843c21fd934d5ae67 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4096 | b47eaca4c149ee829de76a342b5560d5 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 3746f5876803f8f30db5bb2deb8772ae |
.reloc | 0 | 00000000000000000000000000000000 |
.rsrc | 48128 | e833c76ec76f44df86ad7f4b06ac7b01 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Offer1.exe