How to remove PasswordExtension.Win.exe
- File Details
- Overview
- Analysis
PasswordExtension.Win.exe
The module PasswordExtension.Win.exe has been detected as PUP.TotalAV
File Details
Product Name: |
|
Company Name: |
|
MD5: |
249aedc8950d8b43231197838bdbff87 |
Size: |
2 MB |
First Published: |
2019-03-10 16:24:57 (5 years ago) |
Latest Published: |
2019-04-08 19:33:30 (5 years ago) |
Status: |
PUP.TotalAV (on last analysis) |
|
Analysis Date: |
2019-04-08 19:33:30 (5 years ago) |
Overview
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
26.7% |
|
|
20.0% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
Windows 10 |
68.8% |
|
Windows Server 2008 R2 |
12.5% |
|
Windows 7 |
12.5% |
|
Windows 8.1 |
6.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0022d73e |
MVID: |
a23da058-0a3a-46db-bfd9-7192584771d4 |
Typelib ID: |
53bad8c1-e718-11cf-893d-00a0c9054228 |
Name |
Size of data |
MD5 |
.text |
2275328 |
9a6b8efc2ebfb2c794697e53938028b3 |
.rsrc |
110080 |
6c6013aef5164ff689fd9e46ef7c8616 |
.reloc |
512 |
f74287d06d2d621c821c0ba8630d2bba |