How to remove WeatherTool_325_egy.exe
- File Details
- Overview
- Analysis
WeatherTool_325_egy.exe
The module WeatherTool_325_egy.exe has been detected as Adware.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
80560796f771477b52a8bf72d9abfe25 |
Size: |
5 MB |
First Published: |
2017-06-14 19:09:53 (7 years ago) |
Latest Published: |
2018-08-16 10:12:07 (6 years ago) |
Status: |
Adware.Downloader (on last analysis) |
|
Analysis Date: |
2018-08-16 10:12:07 (6 years ago) |
Overview
%appdata%\opencandy\2b12b6a96ebc40c7a908c0b59dfa7e34 |
%appdata%\rheng\ece6f840b1f3464e919056fb70b349cb |
%appdata%\opencandy |
%appdata%\rpeng |
Windows 7 |
75.0% |
|
Windows 10 |
25.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000038af |
Name |
Size of data |
MD5 |
.text |
29696 |
419d4e1be1ac35a5db9c47f553b27cea |
.rdata |
11264 |
cca1ca3fbf99570f6de9b43ce767f368 |
.data |
512 |
77f0839f8ebea31040e462523e1c770e |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
376832 |
7119b8c9feaba86497aac004513921f7 |
.reloc |
4096 |
e03ef34b32ec2b71ac49dee6623adccb |