How to remove Passport.dll
- File Details
- Overview
- Analysis
Passport.dll
The module Passport.dll has been detected as PUP.Ask
File Details
Product Name: |
|
Company Name: |
|
MD5: |
015309d5e369dd71a1460b981e000caa |
Size: |
11 KB |
First Published: |
2017-05-31 17:02:40 (6 years ago) |
Latest Published: |
2019-07-09 00:37:42 (4 years ago) |
Status: |
PUP.Ask (on last analysis) |
|
Analysis Date: |
2019-07-09 00:37:42 (4 years ago) |
Overview
Signed By: |
APN LLC |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv76kdom0gg.7z\program files\askpartnernetwork\toolbar\{partnerid} |
%programfiles%\askpartnernetwork\toolbar\orj-spe\source\program files\askpartnernetwork\toolbar\{partnerid} |
%programfiles%\askpartnernetwork\toolbar\ptf-rg |
%programfiles%\askpartnernetwork\toolbar\sgt2sp-sat |
%programfiles%\askpartnernetwork\toolbar\ptf-rg\source\program files\askpartnernetwork\toolbar\{partnerid} |
%programfiles%\askpartnernetwork\toolbar\sgt2sp-sat\source\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-kmpv7[5].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-ptv-rg[1].7z\program files\askpartnernetwork\toolbar\{partnerid} |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-spc-sp[1].7z\program files\askpartnernetwork\toolbar |
%system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\asktoolbarinstaller-spc-sp[4].7z\program files\askpartnernetwork\toolbar |
|
35.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
Windows 7 |
90.0% |
|
Windows 8 |
5.0% |
|
Windows 8.1 |
5.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00001160 |
Name |
Size of data |
MD5 |
.text |
1024 |
0d6b7ba639b42e77e6a136e72e487832 |
.rdata |
1024 |
12c1d6cdb56b6f4d6c35b2b2ec2f8b89 |
.data |
512 |
0b2e7741e0c0fc65af1542e370d89f53 |
.rsrc |
1536 |
44bed52640f2a64c7cae6c53a7e4a0e2 |
.reloc |
512 |
db487dd7d6cc1e9531a08e1ec3ba87be |