How to remove octB4E8.tmp.exe

octB4E8.tmp.exe

The module octB4E8.tmp.exe has been detected as Adware.SweetIM

octB4E8.tmp.exe
Product Name:

Pokki

Company Name:

SweetLabs,Inc.

MD5: 6493d788590e4a7a7996173baa5ab1a0
Size: 61 MB
First Published: 2017-06-13 23:06:40 (7 years ago)
Latest Published: 2019-10-30 16:56:31 (5 years ago)
Status: Adware.SweetIM (on last analysis)
Analysis Date: 2019-10-30 16:56:31 (5 years ago)
Signed By: Win Services
Status: Valid
%localappdata%\temp
%sysdrive%\windows.old\users\avrdcadmin\appdata\local\temp
%sysdrive%\windows.old\users\miao-rong.yan\appdata\local\temp
%sysdrive%\$recycle.bin\s-1-5-21-382801249-3102447504-1049224074-1001
%temp%
%sysdrive%\titip doc\win7\appdata\local
%temp%
%sysdrive%\c\users\user\appdata\local
oct668.tmp.exe
octB4E8.tmp.exe
oct388E.tmp.exe
oct482.tmp.exe
oct1552.tmp.exe
octC0A4.tmp.exe
oct1907.tmp.exe
octE19C.tmp.exe
oct5483.tmp.exe
oct6933.tmp.exe
oct2BF.tmp.exe
oct1F85.tmp
oct13B1.tmp.exe
octA274.tmp.exe
oct8247.tmp.exe
oct942E.tmp.exe
octFE0F.tmp.exe
$RIA8V3R.exe
oct1C3F.tmp.exe
octF7F.tmp.exe
oct8F1E.tmp.exe
oct2B9B.tmp.exe
oct67EA.tmp.exe
octD0C8.tmp.exe
oct874E.tmp.exe
oct473E.tmp.exe
octB40F.tmp.exe
octACF3.tmp.exe
oct17EE.tmp.exe
oct7714.tmp.exe
oct479D.tmp.exe
oct9EC7.tmp.exe
oct5320.tmp.exe
oct23AC.tmp.exe
oct60FF.tmp.exe
octD49D.tmp.exe
oct94C7.tmp.exe
14.9%
14.9%
8.5%
6.4%
4.3%
4.3%
4.3%
4.3%
4.3%
4.3%
4.3%
4.3%
4.3%
2.1%
2.1%
2.1%
2.1%
2.1%
2.1%
2.1%
2.1%
Windows 8.1 80.9%
Windows 7 12.8%
Windows 10 6.4%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000038af

PE Sections:

Name Size of data MD5
.text 29696 419d4e1be1ac35a5db9c47f553b27cea
.rdata 11264 cca1ca3fbf99570f6de9b43ce767f368
.data 512 77f0839f8ebea31040e462523e1c770e
.ndata 0 00000000000000000000000000000000
.rsrc 51200 b26a3c7a9c131cea9fa87755b3170671
.reloc 4096 a1aa9ef6a982ef1d93ec373edf867a30

More information:

Download GridinSoft Anti-Malware - Removal tool for octB4E8.tmp.exe