How to remove xeq4nbzh.exe
- File Details
- Overview
- Analysis
xeq4nbzh.exe
The module xeq4nbzh.exe has been detected as PUP.OpenCandy
File Details
Product Name: |
|
Company Name: |
|
MD5: |
76c95880be287a0e0c4cdc7ddaba878a |
Size: |
1 MB |
First Published: |
2017-05-22 11:16:08 (7 years ago) |
Latest Published: |
2020-02-19 12:49:54 (4 years ago) |
Status: |
PUP.OpenCandy (on last analysis) |
|
Analysis Date: |
2020-02-19 12:49:54 (4 years ago) |
Overview
%profile%\downloads\yt.2 |
%profile%\downloads |
%sysdrive%\dari comp\old\users\win7\appdata\local |
%temp% |
%sysdrive%\d\thanh |
%localappdata%\malwareprotectionlive |
%sysdrive% |
%sysdrive%\filehistory\jmjm\jmjm-home-10\data\c\users\jmjm |
%sysdrive%\filehistory\gulmo_000\gul\data\c\users\gulmo_000 |
%sysdrive%\seagate dashboard 2.0\jmjm-nz0610-w10\john\backup\001e8a51-5d18-48fb-92c0-1ae8230cd709\20161110_181707_johninc68\c\users\john |
FreeYouTubeDownloaderOC.exe |
xeq4nbzh.exe |
taadhiyg.exe |
z0hdliwm.exe |
FreeYouTubeDownloaderOC (1).exe |
evirtoym.exe |
FreeYouTubeDownloaderOC-c66dda31-4e5d-4d57-b581-3aaac39a542c.exe |
FreeYouTubeDownloaderOC (2016_12_09 01_49_53 UTC).exe |
FreeYouTubeDownloaderOC (2015_07_31 21_56_01 UTC).exe |
$RKP25IA.exe |
|
42.9% |
|
|
14.3% |
|
|
10.7% |
|
|
7.1% |
|
|
7.1% |
|
|
3.6% |
|
|
3.6% |
|
|
3.6% |
|
|
3.6% |
|
|
3.6% |
|
Windows 10 |
50.0% |
|
Windows 7 |
35.7% |
|
Windows 8.1 |
14.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00057084 |
Name |
Size of data |
MD5 |
.text |
510464 |
b388a5de43cb8e253fddad45eb3a55dc |
.rdata |
110592 |
a2c1eff629326c1d1801fb37bd398f9b |
.data |
12288 |
f3a3ea53104f3defe42deb7c14385b33 |
.rsrc |
500224 |
cf02c97442ccec418ade26b08ae6053a |
.reloc |
36864 |
f7cd9b6cc2571b70458aea55b480dbe6 |