How to remove dyesubd1_p3v0.exe
- File Details
- Overview
- Analysis
dyesubd1_p3v0.exe
The module dyesubd1_p3v0.exe has been detected as Adware.OpenCandy
File Details
MD5: |
87ea9812ff1bd916be99b6d444b8b293 |
Size: |
71 KB |
First Published: |
2017-05-24 11:10:33 (8 years ago) |
Latest Published: |
2021-01-12 06:22:49 (4 years ago) |
Status: |
Adware.OpenCandy (on last analysis) |
|
Analysis Date: |
2021-01-12 06:22:49 (4 years ago) |
Overview
%appdata%\rheng\3e8120d26aef44ceb798b9ded548ebf9 |
%appdata%\rheng\8455da2ebb9b43578203a21d96998a95 |
%appdata%\opencandy\32d98cc94025456d8d90de64847160ef |
%appdata%\opencandy\opencandy_a1655136587b41df8eb7776dbbbc4ac4 |
%appdata%\opencandy\3d18e218d0ab400fa231098606c014e2 |
%appdata%\opencandy\9ead3860c8af4d1cac7e1012331c0823 |
%profile%\ser\application data\reclib\a03fbb75f3d444eb933f77e60de7109f |
%appdata%\opencandy\206bd16c0fde455cb046216f1d5d33bd |
%appdata%\rheng\d2f896c35ae54d179617708a0dbd906f |
%profile%\dministrator\application data\reclib\1ed1a416573a4d6cb9c888eb47f49d38 |
|
18.6% |
|
|
11.6% |
|
|
8.5% |
|
|
7.5% |
|
|
6.5% |
|
|
6.0% |
|
|
5.5% |
|
|
4.5% |
|
|
4.0% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
2.0% |
|
|
1.5% |
|
|
1.5% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
Windows 10 |
49.0% |
|
Windows 7 |
35.0% |
|
Windows 8 |
6.5% |
|
Windows 8.1 |
6.0% |
|
Windows XP |
3.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00003883 |
Name |
Size of data |
MD5 |
.text |
28160 |
00499a6f70259150109c809d6aa0e6ed |
.rdata |
11264 |
07990aaa54c3bc638bb87a87f3fb13e3 |
.data |
512 |
014871d9a00f0e0c8c2a7cd25606c453 |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
2560 |
caabe0410ba6075c00aee4b395c17f51 |
.reloc |
4096 |
17c2bee203cac536ef611d345932978f |