How to remove spassist.exe
- File Details
- Overview
- Analysis
spassist.exe
The module spassist.exe has been detected as Adware.Downloader
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5c06e9f766abb7b38039518f3e2806b5 |
Size: |
4 MB |
First Published: |
2017-05-26 22:05:32 (7 years ago) |
Latest Published: |
2020-12-21 20:36:40 (4 years ago) |
Status: |
Adware.Downloader (on last analysis) |
|
Analysis Date: |
2020-12-21 20:36:40 (4 years ago) |
Overview
%sysdrive%\adwcleaner\quarantine\files\jsonaxlmcdalazqnfepkefyujicsyigz |
%programfiles%\softplanet software assistant |
%programfiles% |
%sysdrive%\adwcleaner\quarantine\files |
%sysdrive%\windows.old.000\program files (x86) |
%sysdrive%\adwcleaner\quarantine |
%sysdrive% |
%localappdata%\virtualstore\program files\termcoach_1.10.0.24 |
%programfiles% |
%programfiles% |
|
14.3% |
|
|
11.9% |
|
|
9.5% |
|
|
9.5% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
Windows 7 |
58.1% |
|
Windows 10 |
32.6% |
|
Windows 8 |
4.7% |
|
Windows XP |
4.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x003bc590 |
Name |
Size of data |
MD5 |
.text |
3899392 |
d5a602358f71bbcdb8a109eec771e4f1 |
.itext |
14336 |
c3257b636e393343d7643db4832acdfb |
.data |
65536 |
851578ffcfbd0da1d8968d76278fe0e4 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
16896 |
c8f74040e566caf23a820493e6eb5d36 |
.didata |
2560 |
5fab1bae6e9e4bd80832930770ee9db1 |
.edata |
512 |
5506950b761e6b39b337302d02d7cef9 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
629ea191c6e50b738fd19bf41de13903 |
.reloc |
300032 |
85c3698f253ae547c4bdcac0869fa93f |
.rsrc |
203776 |
2bb98c74f7ec9b866bad7dc37f8df622 |