How to remove observer_x64_helper.exe
- File Details
- Overview
- Analysis
observer_x64_helper.exe
The module observer_x64_helper.exe has been detected as PUP.ChinAd
File Details
Company Name: |
|
MD5: |
2674c027022598f21dd8ff239d8aca9a |
Size: |
721 KB |
First Published: |
2024-11-05 23:01:43 (11 months ago) |
Latest Published: |
2024-11-05 23:01:43 (11 months ago) |
Status: |
PUP.ChinAd (on last analysis) |
|
Analysis Date: |
2024-11-05 23:01:43 (11 months ago) |
Overview
%programfiles%\ludashi\superapp |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00021ff8 |
Name |
Size of data |
MD5 |
.text |
477696 |
6cf27e52f2d3d218dbeb692c5a29c70f |
.rdata |
162816 |
da36a7c77a9376270160d78ac22a8c14 |
.data |
52736 |
2f5c8b5c63e23ecfb4b9c3e25c0b2dee |
.pdata |
20992 |
3a704a281516165c81cf63d5c588ade4 |
.gxfg |
10240 |
5e91324c214ddcf4b758bdbcd0eef923 |
.gehcont |
512 |
bc889906fa4ce9aa7355c650cfca96ce |
.rsrc |
1536 |
2247dab43742b234a6501e788b506c3b |
.reloc |
4608 |
8aa43ded4216114c14352551940fc55d |