How to remove RegistryReviverSetup_3.0.1.144_CO2.exe
- File Details
- Overview
- Analysis
RegistryReviverSetup_3.0.1.144_CO2.exe
The module RegistryReviverSetup_3.0.1.144_CO2.exe has been detected as Adware.OpenCandy
File Details
Product Name: |
|
Company Name: |
|
MD5: |
de73b275eaae0b823d528170026638b9 |
Size: |
5 MB |
First Published: |
2017-05-25 07:10:01 (7 years ago) |
Latest Published: |
2020-12-08 17:47:19 (3 years ago) |
Status: |
Adware.OpenCandy (on last analysis) |
|
Analysis Date: |
2020-12-08 17:47:19 (3 years ago) |
Overview
%profile%\dministrator\application data\opencandy\64d5ed935db74af098c9bf45ed82eab2 |
%appdata%\opencandy\233bf443938a4cc68250ccebce0c6366 |
%appdata%\opencandy\opencandy_4b8a23fa62ed4cb58a1f93a5a08e4037 |
%appdata%\opencandy\1d5dee517cfa4e20b7249592a9f5c6a9 |
%appdata%\opencandy\2d997d03d2e74f06b68c3c0205b25bdb |
%appdata%\opencandy\fae1a162314b47e787307260dc985984 |
%appdata%\opencandy\645bfcfa54ff478688c4f805fc673f2f |
%appdata%\opencandy\12e5e317ae36468db6115f517a9062d1 |
%appdata%\opencandy\ac417beb96a04c0d84a7cf9e8af37f2e |
%appdata%\opencandy\d6a5b5bfd9094b1f8282deed4fa3d40c |
|
41.1% |
|
|
8.1% |
|
|
7.3% |
|
|
6.5% |
|
|
4.0% |
|
|
3.2% |
|
|
3.2% |
|
|
2.4% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 7 |
59.2% |
|
Windows 8.1 |
17.6% |
|
Windows 10 |
13.6% |
|
Windows 8 |
6.4% |
|
Windows XP |
3.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000033e9 |
Name |
Size of data |
MD5 |
.text |
25600 |
1a752074fcd11165f6f148ea63ebe068 |
.rdata |
6656 |
7eb0899a4b6211f8bc545228417d92ad |
.data |
512 |
b0b1d7c362f8cc76541b7fce5014e602 |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
364032 |
d2adbb1b763b680636e891405ede292d |