How to remove OnlineGuardian-v2.Vexe
- File Details
- Overview
- Analysis
OnlineGuardian-v2.Vexe
The module OnlineGuardian-v2.Vexe has been detected as PUP.Microleaves
File Details
Product Name: |
|
Company Name: |
|
MD5: |
627506e7ceb7233b48ed9c5b47646141 |
Size: |
542 KB |
First Published: |
2017-05-22 07:06:18 (7 years ago) |
Latest Published: |
2020-05-10 17:58:18 (4 years ago) |
Status: |
PUP.Microleaves (on last analysis) |
|
Analysis Date: |
2020-05-10 17:58:18 (4 years ago) |
Overview
%programfiles%\microleaves\online.io application |
%sysdrive%\adwcleaner\quarantine\files\ltcguxvpsrbwkznnawxzlhosmwhdkxru\online.io application |
%appdata%\zhp\quarantine\microleaves\online.io application |
%sysdrive%\adwcleaner\quarantine\files\nltlnnnizltgrxicwqifkyekhsdpiber\online.io application |
%programfiles%\microleaves |
%sysdrive%\system volume information\systemrestore\frstaging\program files (x86)\microleaves |
%sysdrive%\appdata\roaming\microleaves\online.io application 2.1.0\install |
OnlineGuardian-v2.exe |
OnlineGuardian-v2.Vexe |
OnlineGuardian-v2.exe.quarantined |
|
34.7% |
|
|
9.7% |
|
|
7.5% |
|
|
5.9% |
|
|
4.7% |
|
|
3.8% |
|
|
3.8% |
|
|
2.8% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
2.2% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.3% |
|
|
1.3% |
|
|
0.9% |
|
|
0.9% |
|
|
0.6% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
64.4% |
|
Windows 7 |
27.2% |
|
Windows 8.1 |
6.6% |
|
Windows 8 |
1.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000012c0 |
Name |
Size of data |
MD5 |
.text |
105472 |
146a80022f96293503af3e648f6dae45 |
.data |
512 |
00c49e00b7989f9bf95aaa014e5f074a |
.rdata |
6656 |
c083cda05ff38f6ce44d2af420f237e0 |
.eh_fram |
11776 |
552968946c69451838ae29425c47ea3d |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
3584 |
725a3de3074bad720af3227dc10cf044 |
.CRT |
512 |
2c906752fe7355808df8ee5a6001fcaf |
.tls |
512 |
210f409e50035e70c2412ea102d8a2e5 |
.rsrc |
371712 |
6fb14644685c91f9c23e1b3d892e1c5d |