How to remove tmpFF3.exe
tmpFF3.exe
The module tmpFF3.exe has been detected as PUP.Downloader
File Details
Product Name: | SaveFrom.net helper 1.9 |
Company Name: | SaveFrom.net |
MD5: | c92772316183dc359f186655c490cf31 |
Size: | 5 MB |
First Published: | 2017-07-04 22:10:14 (7 years ago) |
Latest Published: | 2017-08-18 14:04:03 (7 years ago) |
Status: | PUP.Downloader (on last analysis) | |
Analysis Date: | 2017-08-18 14:04:03 (7 years ago) |
Overview
Signed By: | Magicbit, Inc |
Status: | Valid |
Common Places:
%localappdata%\temp |
File Names:
tmp598E.exe |
tmpFF3.exe |
tmpFAC3.exe |
tmp4FBD.exe |
tmpC9C0.exe |
tmp3AA3.exe |
Geography:
50.0% | ||
25.0% | ||
25.0% |
OS Version:
Windows 8.1 | 75.0% | |
Windows 8 | 25.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000113bc |
PE Sections:
Name | Size of data | MD5 |
.text | 61952 | 3a126e478661f20816f9d9285615f98e |
.itext | 3072 | ba48b9b17b3dd8b92da3bd93f20ddb34 |
.data | 3584 | d7fd5f4b562d7961758f3d6a8c834fd0 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 3584 | 93d91a2b90e60bd758fc0c4908856ae1 |
.tls | 0 | 00000000000000000000000000000000 |
.rdata | 512 | 3dffc444ccc131c9dcee18db49ee6403 |
.rsrc | 154112 | 7610cd7b588b861095247baa2e1586dd |
More information:
Download GridinSoft
Anti-Malware - Removal tool for tmpFF3.exe