How to remove trz3BA6.tmp
- File Details
- Overview
- Analysis
trz3BA6.tmp
The module trz3BA6.tmp has been detected as PUP.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
50703acb9a26062000f8e4b6925e3934 |
Size: |
859 KB |
First Published: |
2017-05-21 06:06:08 (7 years ago) |
Latest Published: |
2020-12-22 06:19:57 (4 years ago) |
Status: |
PUP.Gen (on last analysis) |
|
Analysis Date: |
2020-12-22 06:19:57 (4 years ago) |
Overview
%programfiles%\microleaves\online special application |
%sysdrive%\appdata\roaming\microleaves\online special application 2.6.0\install\977e0fe |
%sysdrive%\adwcleaner\quarantine\files\vlblqauwziwzhgbekusylifbkuaqdfkj\online special application |
%programfiles%\microleaves |
%sysdrive%\$recycle.bin\s-1-5-21-3528189060-3599398841-4009933278-1000\$ront22z\microleaves\online special application 2.6.0\install |
%sysdrive%\appdata\roaming\microleaves\online special application 2.6.0\install |
%programfiles%\microleaves |
%programfiles%\microleaves |
%programfiles%\microleaves |
%sysdrive%\appdata\roaming\microleaves\online special application 2.6.0\install |
Online Special Application Updater.exe |
trz3BA6.tmp |
Online Special Application Updater.exe.vir |
|
14.4% |
|
|
8.6% |
|
|
7.3% |
|
|
6.0% |
|
|
5.2% |
|
|
3.7% |
|
|
3.1% |
|
|
2.9% |
|
|
2.6% |
|
|
2.6% |
|
|
2.4% |
|
|
2.4% |
|
|
2.1% |
|
|
1.8% |
|
|
1.8% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.3% |
|
|
1.3% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
45.3% |
|
Windows 7 |
44.0% |
|
Windows 8.1 |
8.3% |
|
Windows 8 |
2.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00038a2f |
Name |
Size of data |
MD5 |
.text |
350208 |
ebfdba40150a2183598a4be9fadfd7f7 |
.rdata |
102400 |
1850f76485826b4adc3fc5b3451ad98f |
.data |
4096 |
c9c53966f1c1d505a3e36c5c87faed2d |
.gfids |
1024 |
092f461c29c962e273cc77a9a0675e9a |
.tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
.rsrc |
391680 |
3feadb857a8731a8272f9b40fdc3dc3e |
.reloc |
20480 |
11cdb965867c2629d9f929a4f9e6e927 |