How to remove xeq4nbzh.exe

xeq4nbzh.exe

The module xeq4nbzh.exe has been detected as PUP.OpenCandy

xeq4nbzh.exe
Product Name:

Free YouTube Downloader

Company Name:

How, Inc

MD5: 76c95880be287a0e0c4cdc7ddaba878a
Size: 1 MB
First Published: 2017-05-22 11:16:08 (6 years ago)
Latest Published: 2020-02-19 12:49:54 (4 years ago)
Status: PUP.OpenCandy (on last analysis)
Analysis Date: 2020-02-19 12:49:54 (4 years ago)
Signed By: OpenCandy Inc.
Status: Valid
%profile%\downloads\yt.2
%profile%\downloads
%sysdrive%\dari comp\old\users\win7\appdata\local
%temp%
%sysdrive%\d\thanh
%localappdata%\malwareprotectionlive
%sysdrive%
%sysdrive%\filehistory\jmjm\jmjm-home-10\data\c\users\jmjm
%sysdrive%\filehistory\gulmo_000\gul\data\c\users\gulmo_000
%sysdrive%\seagate dashboard 2.0\jmjm-nz0610-w10\john\backup\001e8a51-5d18-48fb-92c0-1ae8230cd709\20161110_181707_johninc68\c\users\john
FreeYouTubeDownloaderOC.exe
xeq4nbzh.exe
taadhiyg.exe
z0hdliwm.exe
FreeYouTubeDownloaderOC (1).exe
evirtoym.exe
FreeYouTubeDownloaderOC-c66dda31-4e5d-4d57-b581-3aaac39a542c.exe
FreeYouTubeDownloaderOC (2016_12_09 01_49_53 UTC).exe
FreeYouTubeDownloaderOC (2015_07_31 21_56_01 UTC).exe
$RKP25IA.exe
42.9%
14.3%
10.7%
7.1%
7.1%
3.6%
3.6%
3.6%
3.6%
3.6%
Windows 10 50.0%
Windows 7 35.7%
Windows 8.1 14.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00057084

PE Sections:

Name Size of data MD5
.text 510464 b388a5de43cb8e253fddad45eb3a55dc
.rdata 110592 a2c1eff629326c1d1801fb37bd398f9b
.data 12288 f3a3ea53104f3defe42deb7c14385b33
.rsrc 500224 cf02c97442ccec418ade26b08ae6053a
.reloc 36864 f7cd9b6cc2571b70458aea55b480dbe6

More information:

Download GridinSoft Anti-Malware - Removal tool for xeq4nbzh.exe