How to remove dh133a.exe
dh133a.exe
The module dh133a.exe has been detected as Adware.OpenCandy
File Details
Product Name: | Installation helper |
Company Name: | OpenCandy |
MD5: | 3a92e820ab28550dafee8c88e4b9e342 |
Size: | 194 KB |
First Published: | 2018-02-19 16:05:29 (6 years ago) |
Latest Published: | 2018-02-19 16:05:29 (6 years ago) |
Status: | Adware.OpenCandy (on last analysis) | |
Analysis Date: | 2018-02-19 16:05:29 (6 years ago) |
Overview
Signed By: | OpenCandy |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%sysdrive%\cnahoum2-pc\backup set 2015-06-07 191204\backup files 2015-06-07 191204\backup files 11.zip\c\users\cnahoum2\appdata\roaming\rheng |
Geography:
100.0% |
OS Version:
Windows 8.1 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00071620 |
PE Sections:
Name | Size of data | MD5 |
UPX0 | 0 | 00000000000000000000000000000000 |
UPX1 | 150016 | 2fd7e5e3751b4d6219c49d7728d75395 |
.rsrc | 40448 | e5b8a23e03f902341e85dfe958403182 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for dh133a.exe