How to remove f_000889
f_000889
The module f_000889 has been detected as PUP.OfferCore
                File Details
| Product Name: | uTorrent Web® | 
                        
| Company Name: | |
| MD5: | f4f238302d3529b21c6a8bf9ed4f5276 | 
| Size: | 1 MB | 
| First Published: | 2023-03-18 23:32:07 (2 years ago) | 
| Latest Published: | 2025-02-22 23:01:35 (9 months ago) | 
| Status: | PUP.OfferCore (on last analysis) | |
| Analysis Date: | 2025-02-22 23:01:35 (9 months ago) | 
Overview
| Signed By: | Rainberry Inc | 
| Status: | Valid | 
Common Places:
| %localappdata%\yandex\yandexbrowser\user data\default\cache | 
| %profile% | 
| %profile% | 
| %sysdrive%\$recycle.bin | 
| %sysdrive%\$recycle.bin | 
| %desktop% | 
| %sysdrive%\$recycle.bin | 
| %sysdrive%\$recycle.bin | 
| %profile%\onedrive | 
| %profile%\onedrive | 
Geography:
| 24.3% | ||
| 10.8% | ||
| 8.1% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 5.4% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | ||
| 2.7% | 
OS Version:
| Windows 10 | 94.6% | |
| Windows 7 | 2.7% | |
| Windows 8.1 | 2.7% | 
Analysis
| Subsystem: | Windows GUI | 
| PE Type: | pe | 
| OS Bitness: | 32 | 
| Image Base: | 0x00400000 | 
| Entry Address: | 0x000b5eec | 
PE Sections:
| Name | Size of data | MD5 | 
| .text | 735232 | ad6e46e3a3acdb533eb6a077f6d065af | 
| .itext | 6144 | d40fc822339d01f2abcc5493ac101c94 | 
| .data | 14336 | 4c195d5591f6d61265df08a3733de3a2 | 
| .bss | 0 | d41d8cd98f00b204e9800998ecf8427e | 
| .idata | 4096 | a73d686f1e8b9bb06ec767721135e397 | 
| .didata | 512 | 41b8ce23dd243d14beebc71771885c89 | 
| .edata | 512 | 37c1a5c63717831863e018c0f51dabb7 | 
| .tls | 0 | d41d8cd98f00b204e9800998ecf8427e | 
| .rdata | 512 | 8f2f090acd9622c88a6a852e72f94e96 | 
| .rsrc | 56320 | 30366ad4e7de9b649aca21e79cc3fde3 | 
More information:
                    Download GridinSoft
                        Anti-Malware - Removal tool for f_000889