How to remove helper_web_ui.btinstall

helper_web_ui.btinstall

The module helper_web_ui.btinstall has been detected as PUP.OfferCore

helper_web_ui.btinstall
MD5: 9c007b9613e66049b29fe4061ae92b64
Size: 4 MB
First Published: 2023-05-11 23:30:29 (2 years ago)
Latest Published: 2025-05-09 23:01:26 (a week ago)
Status: PUP.OfferCore (on last analysis)
Analysis Date: 2025-05-09 23:01:26 (a week ago)
Signed By: Rainberry Inc
Status: Valid
%appdata%
%temp%
%temp%
%temp%
%temp%
%temp%
%temp%
%appdata%
%appdata%
%appdata%
51.5%
15.7%
6.0%
5.8%
4.3%
2.2%
2.0%
1.5%
1.4%
1.2%
1.1%
0.8%
0.6%
0.5%
0.5%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
Windows 8.1 49.5%
Windows 10 44.9%
Windows 7 5.7%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00009afd

PE Sections:

Name Size of data MD5
.text 52736 05c1b440d62b5e981c7ddd09850125b6
.rdata 7168 ed56cd9519d4cf09a0e9e8f637177276
.data 512 9600ec9057ed398cee93a5096d27d96c
.CRT 512 be71b421baf87591ba3ca2892560ca56
.rsrc 16896 ae18f8125b0130dc7645ce37b50d98ff

More information:

Download GridinSoft Anti-Malware - Removal tool for helper_web_ui.btinstall