How to remove psmachine.dll
- File Details
- Overview
- Analysis
psmachine.dll
The module psmachine.dll has been detected as Adware.Downloader
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
c38ce444fe4f5449b8e1163f925c733a |
| Size: |
153 KB |
| First Published: |
2017-06-12 16:06:46 (8 years ago) |
| Latest Published: |
2021-10-24 20:36:44 (4 years ago) |
| Status: |
Adware.Downloader (on last analysis) |
|
| Analysis Date: |
2021-10-24 20:36:44 (4 years ago) |
Overview
| %localappdata%\catalinagroup\update\1.3.25.225 |
| %profile%\bd\local settings\application data\catalinagroup\update\1.3.25.225 |
| %localappdata%\catalinagroup\update |
| %profile%\enatual\local settings\application data\catalinagroup\update |
| %profile%\дминистратор\local settings\application data\catalinagroup\update |
| %profile%\ous\local settings\application data\catalinagroup\update |
| %sysdrive%\windows.old\users\samuel\appdata\local\catalinagroup\update |
| %localappdata%\catalinagroup\update |
| %localappdata%\catalinagroup\update |
| %localappdata%\catalinagroup\update |
|
20.0% |
|
|
8.2% |
|
|
5.9% |
|
|
5.9% |
|
|
4.7% |
|
|
4.7% |
|
|
4.7% |
|
|
3.5% |
|
|
3.5% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
| Windows 10 |
50.6% |
|
| Windows 7 |
32.9% |
|
| Windows 8.1 |
10.6% |
|
| Windows XP |
5.9% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x10000000 |
| Entry Address: |
0x00009202 |
| Name |
Size of data |
MD5 |
| .text |
79360 |
bdeab3006c4bbc0b8819eb4d358ad99f |
| .orpc |
512 |
f65e995495a28390d2d0de3279275909 |
| .rdata |
28160 |
b2743a09b188c8d029eeb4a317d69354 |
| .data |
8192 |
fb248e46c53ef9a14c8079cc6981135f |
| .rsrc |
20992 |
745ddbd678413e35f66ff28cf37762c8 |
| .reloc |
13824 |
2a9e6686d1ba6d79ced99c520d5cd465 |