How to remove nacl64_IObitDel.exe
- File Details
- Overview
- Analysis
nacl64_IObitDel.exe
The module nacl64_IObitDel.exe has been detected as Adware.Shopper
File Details
Product Name: |
|
Company Name: |
|
MD5: |
e127e9d605635df6e22876d1282e5bfe |
Size: |
2 MB |
First Published: |
2017-05-21 03:02:04 (8 years ago) |
Latest Published: |
2022-04-18 23:51:08 (3 years ago) |
Status: |
Adware.Shopper (on last analysis) |
|
Analysis Date: |
2022-04-18 23:51:08 (3 years ago) |
%localappdata%\browserair\application\48.0.0.0 |
%sysdrive%\adwcleaner\quarantine\files\joxgftwgbmthwzqdtdvtxdeqaxtufuit\application\48.0.0.0 |
%sysdrive%\adwcleaner\quarantine\files\eialvxcroivnguwlssevtmpzbiprlolt\application\48.0.0.0 |
%sysdrive%\adwcleaner\quarantine\files\tbiihpizckmmtusroabkdfvyhfirmkta\application\48.0.0.0 |
%sysdrive%\adwcleaner\quarantine\files\ysxpcdrkawvxigaygkyvegppwofnilye\application\48.0.0.0 |
%sysdrive%\$recycle.bin\s-1-5-21-3301638717-2371446174-2438490817-1001\$r6slhdm\application\48.0.0.0 |
%sysdrive%\$recycle.bin\s-1-5-21-1112674315-407637440-1436382924-1000\$rjqrsrf\application\48.0.0.0 |
%sysdrive%\adwcleaner\quarantine\files\mxbzlygqslyxgeydvozngporhwlrtwlq\application\48.0.0.0 |
%localappdata%\browserair\temp\source4124_21721\chrome-bin\48.0.0.0 |
%sysdrive%\adwcleaner\quarantine\1xvpfvjcrg\application\48.0.0.0 |
nacl64.exe |
nacl64_IObitDel.exe |
Vietnam |
39.4% |
|
Brazil |
8.1% |
|
Russia |
7.3% |
|
Taiwan |
5.7% |
|
Turkey |
3.3% |
|
United States |
3.3% |
|
Spain |
3.3% |
|
United Kingdom |
2.4% |
|
Japan |
2.4% |
|
Israel |
2.0% |
|
Greece |
2.0% |
|
Thailand |
2.0% |
|
Ukraine |
1.6% |
|
France |
1.2% |
|
Iran |
1.2% |
|
Estonia |
1.2% |
|
Germany |
1.2% |
|
India |
1.2% |
|
Poland |
0.8% |
|
Iraq |
0.8% |
|
Australia |
0.8% |
|
Bosnia and Herzegovina |
0.8% |
|
Italy |
0.8% |
|
Hong Kong |
0.8% |
|
Mexico |
0.8% |
|
Switzerland |
0.8% |
|
Albania |
0.4% |
|
Romania |
0.4% |
|
Belgium |
0.4% |
|
Slovenia |
0.4% |
|
Croatia |
0.4% |
|
Norway |
0.4% |
|
Canada |
0.4% |
|
Indonesia |
0.4% |
|
Malaysia |
0.4% |
|
Sri Lanka |
0.4% |
|
Nepal |
0.4% |
|
Windows 7 |
46.2% |
|
Windows 10 |
44.9% |
|
Windows 8.1 |
8.5% |
|
Windows 8 |
0.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000a62d8 |
Name |
Size of data |
MD5 |
.text |
834560 |
75379b0a901e8746550ba930d26bd1d0 |
.rdata |
1231872 |
6d730e97f6a78ec009c4a2d0c186aeaf |
.data |
14336 |
b1cd12ff9bbdacac4b67f85e73e7d9c2 |
.pdata |
47616 |
f6d40684d2cdf26b5c06cab1a2f7f13a |
.tls |
512 |
642db2236dd2f7ae00eeb0a6621ff5e3 |
.rsrc |
2048 |
633ccd3b91ca3faae48bdcb5aa4db726 |
.reloc |
7680 |
7d43be43482fd558bf31349c89780e7c |