How to remove old_ChaDaoCheng_150.dll
- File Details
- Overview
- Analysis
old_ChaDaoCheng_150.dll
The module old_ChaDaoCheng_150.dll has been detected as Adware.Funshion
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
2ab47b83c7b3a314815649c2abc31908 |
| Size: |
722 KB |
| First Published: |
2017-05-29 21:06:07 (8 years ago) |
| Latest Published: |
2024-11-23 23:01:31 (12 months ago) |
| Status: |
Adware.Funshion (on last analysis) |
|
| Analysis Date: |
2024-11-23 23:01:31 (12 months ago) |
Overview
| %appdata%\aglennan |
| %profile%\fundata |
| %profile%\etworkservice\application data\aattractive |
| %profile%\etworkservice\application data\astriking |
| %appdata%\funmini |
| %appdata%\acruiser |
| %appdata%\ablare |
| %appdata%\alemon |
| %appdata%\abomb |
| %system%\config\systemprofile\appdata\roaming\achurch |
| ChaDaoCheng.dll |
| old_ChaDaoCheng_150.dll |
| old_ChaDaoCheng_182.dll |
| A0200734.dll |
| old_ChaDaoCheng_615.dll |
|
75.9% |
|
|
18.8% |
|
|
3.8% |
|
|
0.8% |
|
|
0.8% |
|
| Windows 7 |
64.7% |
|
| Windows 10 |
18.8% |
|
| Windows 8.1 |
12.8% |
|
| Windows XP |
3.0% |
|
| Windows Server 2008 R2 |
0.8% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x10000000 |
| Entry Address: |
0x000535c3 |
| Name |
Size of data |
MD5 |
| .text |
522752 |
82b6f5046ccbcbebfba20412abb5e20f |
| .rdata |
133632 |
2f5c341985292ef36927bbbb1ad7d927 |
| .data |
24576 |
6d8dce7efa9c70d07fa10921d289e4e0 |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
1536 |
a0d90915691bad9570fe1a51f873cad0 |
| .reloc |
50176 |
fba55faa2cd236de98b9031d7b1a729c |