How to remove microsoft_paint_1667188607.exe
- File Details
- Overview
- Analysis
microsoft_paint_1667188607.exe
The module microsoft_paint_1667188607.exe has been detected as Adware.DealPly
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b7b1ff882b5274afb5c27ceb4c353917 |
Size: |
1 MB |
First Published: |
2018-01-07 09:04:39 (6 years ago) |
Latest Published: |
2019-05-23 14:04:50 (5 years ago) |
Status: |
Adware.DealPly (on last analysis) |
|
Analysis Date: |
2019-05-23 14:04:50 (5 years ago) |
Overview
%profile% |
%profile%\dministrateur\mes documents\downloads |
%profile%\afael\mis documentos |
%profile%\ky\my documents |
%sysdrive% |
%sysdrive%\1 dane pobrane i dokumenty 2019-01-10\downloads |
snappea_3084701906.exe |
microsoft_paint_1667188607.exe |
skype_portable_launcher_0605544572.exe |
microsoft_word_2627941328.exe |
mozilla_firefox_0023666988.exe |
flash_player_pro_2125011864.exe |
combofix_2454104283.exe |
hyperspace_3d_screensaver_2334931156.exe |
microsoft_project_0683700948.exe |
|
42.9% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
Windows XP |
50.0% |
|
Windows 10 |
28.6% |
|
Windows 7 |
21.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000a5f8 |
Name |
Size of data |
MD5 |
CODE |
40448 |
30634cc4968de65b1545aa738a9161fe |
DATA |
1024 |
beee52f18301950f82460d9ffe5aec7e |
BSS |
0 |
00000000000000000000000000000000 |
.idata |
2560 |
bb5485bf968b970e5ea81292af2acdba |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
9ba824905bf9c7922b6fc87a38b74366 |
.reloc |
0 |
00000000000000000000000000000000 |
.rsrc |
11264 |
5467def54de86d8c8f39defdc44b34d5 |