How to remove boy.dll
boy.dll
The module boy.dll has been detected as Adware.Funshion
File Details
Product Name: | Funshion Boot |
Company Name: | Funshion |
MD5: | 82b307b54f646de415649dde804c04de |
Size: | 309 KB |
First Published: | 2017-06-09 10:03:15 (7 years ago) |
Latest Published: | 2020-03-27 07:23:34 (4 years ago) |
Status: | Adware.Funshion (on last analysis) | |
Analysis Date: | 2020-03-27 07:23:34 (4 years ago) |
Overview
Signed By: | Beijing Funshion Online Technologies Ltd. |
Status: | Valid |
Common Places:
%appdata%\aanothe |
%appdata%\aconsider |
%appdata%\aaodemm |
%appdata%\aglennan |
%appdata%\ahoweverd |
%appdata%\aincrease |
%profile% |
%appdata% |
%system%\config\systemprofile\appdata\roaming |
%sysdrive%\cb\tony zhang\public |
File Names:
Fawai_548.dll |
boy.dll |
Lucifer.dll |
Mountain.dll |
Jixie.dll |
Surprise.dll |
Pomegranate.dll |
FunSeed64V454.dll |
FunSeedTmp.dll |
FunSeed64V502_465.dll |
Bear.dll |
Geography:
87.5% | ||
10.7% | ||
1.8% |
OS Version:
Windows 10 | 87.5% | |
Windows 7 | 10.7% | |
Windows Server 2008 R2 | 1.8% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000180000000 |
Entry Address: | 0x00010630 |
PE Sections:
Name | Size of data | MD5 |
.text | 192000 | bb3f84c58def1c3bd8ea555f4970a0dc |
.rdata | 60416 | 02af337a9b2fa91e9a92eeef099979e7 |
.data | 10240 | 4773293a7b5dc2bd0fc135772b1481c0 |
.pdata | 11264 | 0b244067611630fea423dae7cc5354b4 |
.rsrc | 34304 | 5eb15ab70f93d4346790909241517dd3 |
.reloc | 3072 | bfbbbdc6f165bd3e7fb4108d7ad22752 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for boy.dll