How to remove msvcr90.dll
- File Details
- Overview
- Analysis
msvcr90.dll
The module msvcr90.dll has been detected as Adware.Downloader
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
1086d4e8b8da2feacb6e9a316229d6c4 |
| Size: |
635 KB |
| First Published: |
2017-05-29 11:11:56 (8 years ago) |
| Latest Published: |
2021-10-24 20:30:08 (4 years ago) |
| Status: |
Adware.Downloader (on last analysis) |
|
| Analysis Date: |
2021-10-24 20:30:08 (4 years ago) |
Overview
| %localappdata%\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.8_0\binaries\win |
| %programfiles%\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.0.7_0\binaries\win |
| %localappdata%\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.0.6_0\binaries\win |
| %temp%\scoped_dir_7020_29421\crx_install\binaries\win |
| %sysdrive%\adwcleaner\quarantine\3solbph71y\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.8_0\binaries |
| %localappdata%\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.8_0\binaries |
| %sysdrive%\windows.old\users\gabriel\appdata\local\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.8_0\binaries |
| %profile%\明正\my documents\citrio browser 香吉士瀏覽器 44.0.2403.264 免安裝中文版 - 支援bt下載的類chrome瀏覽器\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.0_0\binaries |
| %localappdata%\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.8_0\binaries |
| %sysdrive%\windows.old\users\mbargash.jouf\appdata\local\catalinagroup\citrio\user data\default\extensions\hjinflocgjpjihbgdlipilmjlbkjkmak\0.5.8_0\binaries |
|
31.0% |
|
|
11.9% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
| Windows 7 |
54.8% |
|
| Windows 10 |
40.5% |
|
| Windows XP |
2.4% |
|
| Windows 8.1 |
2.4% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x78520000 |
| Entry Address: |
0x00022d40 |
| Name |
Size of data |
MD5 |
| .text |
613376 |
bb9f5db14e7e27106f13d293e35f9d17 |
| .data |
17408 |
3ed9660a5481d0130a9866dc0931e89e |
| .rsrc |
1024 |
33c9a74b8c3807e5016a241241a7b632 |
| .reloc |
14336 |
1f3ff503ab75137c804a00b855fcb123 |