How to remove Web.dll.7tmp

Web.dll.7tmp

The module Web.dll.7tmp has been detected as Adware.MPC

Web.dll.7tmp

Web.dll.7tmp is a Windows file recorded in the ThreatInfo database. It is associated with MPC Cleaner. The reported company name is DotC United Inc. The current detection status is Adware.MPC, based on the latest analysis from 2021-02-23 04:47:08 (5 years ago).

If Web.dll.7tmp appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Adware.MPC.

Product Name: MPC Cleaner
Company Name: DotC United Inc
MD5: ef7e3b8694d48d89e3c03ac4e8830320
Size: 19 KB
First Published: 2017-05-22 03:01:02 (8 years ago)
Latest Published: 2021-02-23 04:47:08 (5 years ago)
Status: Adware.MPC (on last analysis)
Analysis Date: 2021-02-23 04:47:08 (5 years ago)
%programfiles%\mpc cleaner
%localappdata%\microsoft\windows\inetcache\ie\73ams37a
%localappdata%\microsoft\windows\inetcache\ie\o3eay0gq
%localappdata%\microsoft\windows\temporary internet files\content.ie5\2xfn3ybp
%localappdata%\microsoft\windows\temporary internet files\content.ie5\mxtnm5hh
%localappdata%\microsoft\windows\inetcache\ie\88n7r06y
%programfiles%
%sysdrive%\ka luu-copy\2017_form ka\copy tu 1tb\pc kien an\local disk\program files
%sysdrive%\adwcleaner\quarantine
%localappdata%\microsoft\windows\inetcache\ie

ThreatInfo has observed Web.dll.7tmp in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

Web.dll
Web[1].dll
Web.dll.7tmp

This hash has been seen with multiple file names. Alternate names can appear when software is updated, copied between folders, packed by an installer, or deliberately renamed to avoid recognition. Compare the exact MD5 above before assuming two names refer to the same file.

27.2%
16.9%
11.3%
7.7%
6.7%
4.1%
3.6%
3.6%
3.6%
3.1%
2.6%
2.1%
1.5%
1.0%
1.0%
1.0%
1.0%
0.5%
0.5%
0.5%
0.5%

The strongest geographic signal for this file is Indonesia with 27.2% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 7 44.1%
Windows 10 28.7%
Windows 8.1 23.6%
Windows 8 3.6%

The most common operating system signal for Web.dll.7tmp is Windows 7 with 44.1% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

Web.dll.7tmp is identified as pe for 32 systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x10000000
Entry Address: 0x00002947

PE Sections:

Name Size of data MD5
.text 8704 c27cfcda0fc35dacc2d7fed44ee126dc
.rdata 5120 8afb1c43337d29da2724387ef3e73b8e
.data 1024 10863d03822ed3fdf755ce2d1681fcf2
.rsrc 2048 f4d176b45cb249ed96edf75845de7b8d
.reloc 2048 a49e36883d41da66bc4bad9debfaf343

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information:

Download GridinSoft Anti-Malware - Removal tool for Web.dll.7tmp