How to remove nsy1A5.tmp
nsy1A5.tmp
The module nsy1A5.tmp has been detected as PUP.Gen
File Details
Product Name: | VDownloader |
Company Name: | Vitzo Limited |
MD5: | dca8af0a294b6107416975af8acdb954 |
Size: | 34 MB |
First Published: | 2017-08-07 10:06:30 (7 years ago) |
Latest Published: | 2018-07-07 16:10:16 (6 years ago) |
Status: | PUP.Gen (on last analysis) | |
Analysis Date: | 2018-07-07 16:10:16 (6 years ago) |
Overview
Signed By: | Vitzo LLC |
Status: | Valid |
Common Places:
%temp%\nsa12f8.tmp |
%temp%\nsiafd8.tmp |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\0rpi2v6o |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\7joxfyl7 |
%localappdata%\microsoft\windows\inetcache\ie\uj30n2md |
%localappdata%\microsoft\windows\inetcache\ie\mkqu7l2b |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\bkg0bboi |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\1tljnacv |
%sysdrive%\windows.old\users\win 10\appdata\local\microsoft\windows\inetcache\ie\rc4l3gvd |
%localappdata%\microsoft\windows\temporary internet files\content.ie5\wzh2ifpi |
File Names:
nsq628C.tmp |
nsy1A5.tmp |
VDownloaderSetup[1].exe |
Geography:
37.9% | ||
13.8% | ||
13.8% | ||
6.9% | ||
6.9% | ||
3.4% | ||
3.4% | ||
3.4% | ||
3.4% | ||
3.4% | ||
3.4% |
OS Version:
Windows 7 | 62.1% | |
Windows 10 | 27.6% | |
Windows 8 | 10.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000117dc |
PE Sections:
Name | Size of data | MD5 |
.text | 62464 | a33e9ff7181115027d121cd377c28c8f |
.itext | 4096 | caec456c18277b579a94c9508daf36ec |
.data | 3584 | 746954890499546d73dce0e994642192 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4096 | e9b9c0328fd9628ad4d6ab8283dcb20e |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 3dffc444ccc131c9dcee18db49ee6403 |
.rsrc | 45568 | d385633162c9431ea119a853e45cc4b5 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for nsy1A5.tmp