Gridinsoft Logo

Mytomtom_gHyx-p1.exe Adware InstallCore Analysis

Adware InstallCore
Updated on 2025-02-11 (8 days ago)
Checked by Online Virus Scanner
Online Virus Checker v.1.0.207.174
DB Version: 2025-02-11 14:00:47

Adware.Win32.InstallCore.vl!c

InstallCore is a framework used by software developers to distribute their applications. It is not inherently malicious, but it is often used with potentially unwanted programs (PUPs) and adware for hidden bundling software with additional tools without clear user consent.

File mytomtom_gHyx-p1.exe
Checked 2025-02-11 12:54:43
MD5 629e8df0292761d31e2990883de8cd52
SHA1 5a041e094d6659a41911baf8beec1813e32b23bc
SHA256 5699bd2d2f8bd2175cd202c29413c44ce8bfa87f5b6ccf2b5cce90a88703059f
SHA512 82b1a16982c162b8087a42100605a69be327e6f47d64b1b92048ae671b4ce15640729454d4a903383935cf34efdf4d2ddad37b34d2e317c91ba7da73c581b5e3
Imphash 40ab50289f7ef5fae60801f88d4541fc
File Size 2642848 bytes

Adware.Win32.InstallCore.vl!c Removal

Adware.Win32.InstallCore.vl!c Removal

Gridinsoft has the capability to identify and eliminate Adware.Win32.InstallCore.vl!c without requiring further user intervention.

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Comments This installation was built with Inno Setup.
CompanyName
FileDescription UpdateStar
FileVersion 2.4.0.9031
LegalCopyright
OriginalFileName
ProductName UpdateStar
ProductVersion 2.4.0.9031
Translation 0x0000 0x04b0

Portable Executable Info

a0ef7c81eee20e999575764306184ccf
8341e53a6f1047f3c936b4d36dc8f542
5050d274ccec82ae
Image Base: 0x00400000
Entry Point: 0x004a83bc
Compilation: 2024-07-12 07:26:53
Checksum: 0x00292b27 (Actual: 0x00292b27)
OS Version: 6.1
PEiD: PE32 executable (GUI) Intel 80386, for MS Windows
Sign: OK
Sections: 11
Imports: kernel32, comctl32, user32, oleaut32, advapi32,
Exports: 2
Resources: 30

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00001000 0x000a568c 0x000a5800 b889d302f6fc48a904de33d8d947ae80 6.38
.itext 0x000a7000 0x00001b64 0x00001c00 588dd0a8ab499300d3701cbd11b017d9 6.11
.data 0x000a9000 0x00003838 0x00003a00 5c0c76e77aef52ebc6702430837ccb6e 4.96
.bss 0x000ad000 0x00007258 0x00000000 d41d8cd98f00b204e9800998ecf8427e 0.00
.idata 0x000b5000 0x00000fec 0x00001000 627340dff539ef99048969aa4824fb2d 5.02
.didata 0x000b6000 0x000001a4 0x00000200 fd11c1109737963cc6cb7258063abfd6 2.73
.edata 0x000b7000 0x00000071 0x00000200 7de8ca0c7a61668a728fd3a88dc0942d 1.31
.tls 0x000b8000 0x00000018 0x00000000 d41d8cd98f00b204e9800998ecf8427e 0.00
.rdata 0x000b9000 0x0000005d 0x00000200 d84006640084dc9f74a07c2ff9c7d656 1.39
.reloc 0x000ba000 0x00010fa8 0x00011000 a85fda2741bd9417695daa5fc5a9d7a5 6.71
.rsrc 0x000cb000 0x00011000 0x00011000 011bc993893f1aec0735e443b4f5c6bf 3.72

Leave a comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware