How to remove pas.exe
pas.exe
The module pas.exe has been detected as Adware.Downloader
File Details
Product Name: | Product Authentication Service |
Company Name: | DVJ LIMITED |
MD5: | 3092182597aa076389fd6c10b1fbbb0a |
Size: | 520 KB |
First Published: | 2018-09-29 09:24:07 (6 years ago) |
Latest Published: | 2020-08-06 11:17:46 (4 years ago) |
Status: | Adware.Downloader (on last analysis) | |
Analysis Date: | 2020-08-06 11:17:46 (4 years ago) |
Overview
Signed By: | DVJ LIMITED |
Status: | Valid |
Common Places:
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%sysdrive%\windows.old\users\oem\appdata\roaming |
Geography:
23.8% | ||
19.0% | ||
7.1% | ||
4.8% | ||
4.8% | ||
4.8% | ||
4.8% | ||
4.8% | ||
4.8% | ||
4.8% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% | ||
2.4% |
OS Version:
Windows 10 | 68.2% | |
Windows 8.1 | 20.5% | |
Windows 7 | 11.4% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00020d37 |
PE Sections:
Name | Size of data | MD5 |
.text | 338432 | 823b00393c189c1f191efe43951d1e07 |
.rdata | 107520 | 6275f97f562210618d1fb3f2447064bd |
.data | 5632 | 82ed6d0acf09ed5ff7efe8c744312821 |
.rsrc | 46080 | ce8bf92232cbfb00ade60e0a41a23453 |
.reloc | 18944 | 3260f0edeefa0caaaa47e9eb5b3bec49 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for pas.exe