How to remove uninstall.exe.vir
- File Details
- Overview
- Analysis
uninstall.exe.vir
The module uninstall.exe.vir has been detected as Adware.Somoto
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a29ae906c3a3aa83e934e77c8e198c8e |
Size: |
60 KB |
First Published: |
2017-05-26 19:11:02 (7 years ago) |
Latest Published: |
2021-01-09 23:21:03 (3 years ago) |
Status: |
Adware.Somoto (on last analysis) |
|
Analysis Date: |
2021-01-09 23:21:03 (3 years ago) |
%localappdata%\filesfrog update checker |
%sysdrive%\adwcleaner\quarantine\files\fifwkwznbkkcklmukghpuuifdglwqvgn |
%profile%\dministrator\local settings\application data\filesfrog update checker |
%localappdata% |
%desktop%\my shared folder\c\users\usuario\appdata\local |
%sysdrive%\itai cohan\appdata\local |
%sysdrive%\adwcleaner\quarantine\files |
%sysdrive%\hardisk svuotati\disco c copiato 2017-07-04\adwcleaner\quarantine\c\users\utente\appdata\local |
%sysdrive%\admin-uxddnrhjk\backup set 2018-04-01 190007\backup files 2018-04-01 190007\backup files 41.zip\c\users\администратор\appdata\local |
%desktop%\respaldo lili\administrador\configuración local\datos de programa |
uninstall.exe |
uninstall.exe.vir |
|
24.2% |
|
|
16.7% |
|
|
5.8% |
|
|
5.0% |
|
|
4.2% |
|
|
3.3% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 7 |
72.4% |
|
Windows 10 |
16.3% |
|
Windows 8.1 |
6.5% |
|
Windows 8 |
2.4% |
|
Windows XP |
1.6% |
|
Windows Vista |
0.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000323c |
Name |
Size of data |
MD5 |
.text |
23552 |
0bc2ffd32265a08d72b795b18265828d |
.rdata |
4608 |
f179218a059068529bdb4637ef5fa28e |
.data |
1024 |
975304d6dd6c4a4f076b15511e2bbbc0 |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
18432 |
cd8481625f3019a367b16c0d82863356 |