How to remove Offercast341_ATU3_.exe
- File Details
- Overview
- Analysis
Offercast341_ATU3_.exe
The module Offercast341_ATU3_.exe has been detected as PUP.Ask
File Details
Product Name: |
|
Company Name: |
|
MD5: |
226ecf0075ef1d8ba994e6a1bec69335 |
Size: |
809 KB |
First Published: |
2017-06-14 14:10:39 (7 years ago) |
Latest Published: |
2020-03-27 15:32:42 (4 years ago) |
Status: |
PUP.Ask (on last analysis) |
|
Analysis Date: |
2020-03-27 15:32:42 (4 years ago) |
Overview
%temp%\is-2cr1v.tmp |
%temp%\is-0kg2t.tmp |
%temp%\is-01ku1.tmp |
%sysdrive%\windows.old\users\neucy\appdata\local\temp\is-l1fln.tmp |
%temp%\is-89svb.tmp |
%temp%\is-2njh4.tmp |
%temp%\is-sf0vm.tmp |
%temp% |
%sysdrive%\windows.old\users\cliente\appdata\local\temp |
%programfiles%\panda security\panda security protection |
|
50.0% |
|
|
13.9% |
|
|
11.1% |
|
|
5.6% |
|
|
5.6% |
|
|
2.8% |
|
|
2.8% |
|
|
2.8% |
|
|
2.8% |
|
|
2.8% |
|
Windows 7 |
86.5% |
|
Windows 8.1 |
8.1% |
|
Windows 8 |
5.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000095be |
Name |
Size of data |
MD5 |
.text |
84992 |
0c5c904208263c38faeaa5fcf703e164 |
.rdata |
23040 |
767ab98db1b6412c4dc86953a257083a |
.data |
5120 |
ef2ad48461fdbfb7728ecd634cacddf6 |
.rsrc |
699904 |
d15531243f55e29f4bb6338a6a7b6422 |
.reloc |
8704 |
82a040235bd88feb2afffc5f40a6c04e |