How to remove utt5085.tmp.exe

utt5085.tmp.exe

The module utt5085.tmp.exe has been detected as Adware.Conduit

utt5085.tmp.exe
Company Name:

ClientConnect

MD5: 0b813086a3400aafa1639d08823fbd46
Size: 142 KB
First Published: 2017-05-24 13:09:29 (6 years ago)
Latest Published: 2020-03-16 12:26:17 (4 years ago)
Status: Adware.Conduit (on last analysis)
Analysis Date: 2020-03-16 12:26:17 (4 years ago)
Signed By: ClientConnect LTD
Status: Valid
%localappdata%\temp
%programfiles%\opendownloadermanager
%temp%\wtu~12511251
%sysdrive%\windows.old\users\cliente\appdata\local
%temp%
%appdata%\opencandy
%sysdrive%\windows.old\windows
%sysdrive%
%temp%
spstub.exe
utt5085.tmp.exe
uttE1BD.tmp.exe
utt8C.tmp.exe
spdnew.exe
uttF703.tmp.exe
ValueAdd.exe
sp-downloader.exe
uniiprct.exe
utt33D9.tmp.exe
34.0%
10.6%
10.6%
6.4%
6.4%
6.4%
4.3%
4.3%
4.3%
2.1%
2.1%
2.1%
2.1%
2.1%
2.1%
Windows 7 74.5%
Windows 10 17.0%
Windows 8.1 4.3%
Windows Vista 4.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0000354b

PE Sections:

Name Size of data MD5
.text 25600 3291075913c14a1799655a261fb21cca
.rdata 6656 170563e94de7ebfd6e622a164ce38c8a
.data 512 23d69b1e3a55dee07701198b7650a06b
.ndata 0 00000000000000000000000000000000
.rsrc 3584 f38b2e8c612306fca99b7119d311e1a0

More information:

Download GridinSoft Anti-Malware - Removal tool for utt5085.tmp.exe