How to remove f_000889
f_000889
The module f_000889 has been detected as PUP.OfferCore
File Details
| Product Name: | uTorrent Web® |
| Company Name: | |
| MD5: | f4f238302d3529b21c6a8bf9ed4f5276 |
| Size: | 1 MB |
| First Published: | 2023-03-18 23:32:07 (2 years ago) |
| Latest Published: | 2025-02-22 23:01:35 (9 months ago) |
| Status: | PUP.OfferCore (on last analysis) | |
| Analysis Date: | 2025-02-22 23:01:35 (9 months ago) |
Overview
| Signed By: | Rainberry Inc |
| Status: | Valid |
Common Places:
| %localappdata%\yandex\yandexbrowser\user data\default\cache |
| %profile% |
| %profile% |
| %sysdrive%\$recycle.bin |
| %sysdrive%\$recycle.bin |
| %desktop% |
| %sysdrive%\$recycle.bin |
| %sysdrive%\$recycle.bin |
| %profile%\onedrive |
| %profile%\onedrive |
Geography:
| 24.3% | ||
| 10.8% | ||
| 8.1% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% |
OS Version:
| Windows 10 | 94.6% | |
| Windows 7 | 2.7% | |
| Windows 8.1 | 2.7% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x000b5eec |
PE Sections:
| Name | Size of data | MD5 |
| .text | 735232 | ad6e46e3a3acdb533eb6a077f6d065af |
| .itext | 6144 | d40fc822339d01f2abcc5493ac101c94 |
| .data | 14336 | 4c195d5591f6d61265df08a3733de3a2 |
| .bss | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .idata | 4096 | a73d686f1e8b9bb06ec767721135e397 |
| .didata | 512 | 41b8ce23dd243d14beebc71771885c89 |
| .edata | 512 | 37c1a5c63717831863e018c0f51dabb7 |
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 512 | 8f2f090acd9622c88a6a852e72f94e96 |
| .rsrc | 56320 | 30366ad4e7de9b649aca21e79cc3fde3 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for f_000889