How to remove utt5085.tmp.exe
- File Details
- Overview
- Analysis
utt5085.tmp.exe
The module utt5085.tmp.exe has been detected as Adware.Conduit
File Details
Company Name: |
|
MD5: |
0b813086a3400aafa1639d08823fbd46 |
Size: |
142 KB |
First Published: |
2017-05-24 13:09:29 (7 years ago) |
Latest Published: |
2020-03-16 12:26:17 (4 years ago) |
Status: |
Adware.Conduit (on last analysis) |
|
Analysis Date: |
2020-03-16 12:26:17 (4 years ago) |
Overview
%localappdata%\temp |
%programfiles%\opendownloadermanager |
%temp%\wtu~12511251 |
%sysdrive%\windows.old\users\cliente\appdata\local |
%temp% |
%appdata%\opencandy |
%sysdrive%\windows.old\windows |
%sysdrive% |
%temp% |
spstub.exe |
utt5085.tmp.exe |
uttE1BD.tmp.exe |
utt8C.tmp.exe |
spdnew.exe |
uttF703.tmp.exe |
ValueAdd.exe |
sp-downloader.exe |
uniiprct.exe |
utt33D9.tmp.exe |
|
34.0% |
|
|
10.6% |
|
|
10.6% |
|
|
6.4% |
|
|
6.4% |
|
|
6.4% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
Windows 7 |
74.5% |
|
Windows 10 |
17.0% |
|
Windows 8.1 |
4.3% |
|
Windows Vista |
4.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000354b |
Name |
Size of data |
MD5 |
.text |
25600 |
3291075913c14a1799655a261fb21cca |
.rdata |
6656 |
170563e94de7ebfd6e622a164ce38c8a |
.data |
512 |
23d69b1e3a55dee07701198b7650a06b |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
3584 |
f38b2e8c612306fca99b7119d311e1a0 |