How to remove nsProcess (2016_02_06 07_38_15 UTC).dll
- File Details
- Overview
- Analysis
nsProcess (2016_02_06 07_38_15 UTC).dll
The module nsProcess (2016_02_06 07_38_15 UTC).dll has been detected as PUP.Qiyi
File Details
MD5: |
dacc5f5531887a11804bda084e12cee1 |
Size: |
10 KB |
First Published: |
2017-05-26 08:02:17 (8 years ago) |
Latest Published: |
2024-07-23 23:01:40 (a year ago) |
Status: |
PUP.Qiyi (on last analysis) |
|
Analysis Date: |
2024-07-23 23:01:40 (a year ago) |
Overview
%temp%\nsy56da.tmp |
%appdata%\iqiyi video\setuptemp_134742 |
%temp%\nsyf134.tmp |
%temp%\nsreca2.tmp |
%temp%\nsc7c40.tmp |
%appdata%\iqiyi video\setuptemp_222132 |
%temp%\nsia1d2.tmp |
%temp%\nsk69e.tmp |
%sysdrive%\windows.old\users\rian\appdata\local\temp\nspcf5b.tmp |
%sysdrive%\windows.old\users\rian\appdata\local\temp\nsc85a6.tmp |
nsProcess.dll |
nsProcess (2016_02_06 07_38_15 UTC).dll |
Taiwan |
18.3% |
|
Turkey |
13.3% |
|
Indonesia |
6.7% |
|
Brazil |
6.7% |
|
United States |
6.7% |
|
Malaysia |
5.0% |
|
Thailand |
5.0% |
|
Egypt |
5.0% |
|
Romania |
5.0% |
|
Iraq |
3.3% |
|
Poland |
3.3% |
|
Russia |
3.3% |
|
United Arab Emirates |
3.3% |
|
Vietnam |
3.3% |
|
Slovakia |
3.3% |
|
Philippines |
1.7% |
|
South Korea |
1.7% |
|
Argentina |
1.7% |
|
Slovenia |
1.7% |
|
Saudi Arabia |
1.7% |
|
Windows 7 |
60.0% |
|
Windows 10 |
20.0% |
|
Windows 8 |
11.7% |
|
Windows 8.1 |
8.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00001001 |
Name |
Size of data |
MD5 |
.text |
1536 |
5df9c35fcdd768c2f7d893a861c6b880 |
.rdata |
1024 |
525b9d73a437fb6d76d2daf2200da25d |
.data |
0 |
00000000000000000000000000000000 |
.rsrc |
512 |
3906ff10859afa4b315a856e1a9dc22f |
.reloc |
512 |
c95ed7500ef1f69e1cf215e74374346f |