What is tnP9jUZgM.dll?

tnP9jUZgM.dll is usually located in the 'C:\Program Files (x86)\dJsSTrqCmIE\' folder.

Some of the anti-virus scanners at VirusTotal detected tnP9jUZgM.dll.

If you have additional information about the file, please share it with the FreeFixer users by posting a comment at the bottom of this page.

Vendor and version information [?]

tnP9jUZgM.dll does not have any version or vendor information.

Digital signatures [?]

tnP9jUZgM.dll is not signed.

VirusTotal report

36 of the 72 anti-virus programs at VirusTotal detected the tnP9jUZgM.dll file. That's a 50% detection rate.

ScannerDetection Name
Acronis suspicious
Ad-Aware Gen:Variant.Mikey.79062
AegisLab Riskware.Win32.Mikey.1!c
Alibaba AdWare:Application/Neoreklami.7b8a7f84
ALYac Gen:Variant.Mikey.79062
Arcabit Trojan.Mikey.D134D6
Avast Win64:Adware-gen [Adw]
AVG Win64:Adware-gen [Adw]
Avira HEUR/AGEN.1043329
BitDefender Gen:Variant.Mikey.79062
CrowdStrike win/malicious_confidence_70% (D)
Cylance Unsafe
Emsisoft Gen:Variant.Mikey.79062 (B)
Endgame malicious (high confidence)
ESET-NOD32 a variant of Win64/Adware.Neoreklami.O
F-Secure Heuristic.HEUR/AGEN.1043329
FireEye Generic.mg.4979009a3893231a
Fortinet Riskware/Generic_PUA_NI
GData Gen:Variant.Mikey.79062
Invincea heuristic
K7AntiVirus Adware ( 0053b9c91 )
K7GW Adware ( 0053b9c91 )
Malwarebytes Adware.Neoreklami.TskLnk
MAX malware (ai score=83)
MaxSecure Trojan.Malware.300983.susgen
McAfee Artemis!4979009A3893
McAfee-GW-Edition BehavesLike.Win64.Generic.hh
Microsoft Trojan:Win32/Occamy.C
MicroWorld-eScan Gen:Variant.Mikey.79062
Paloalto generic.ml
Qihoo-360 Generic/Trojan.924
Sangfor Malware
SentinelOne DFI - Suspicious PE
Sophos Generic PUA NI (PUA)
Symantec Trojan.Gen.MBT
VIPRE Win64.Adware.Neoreklami
36 of the 72 anti-virus programs detected the tnP9jUZgM.dll file.

Sandbox Report

The following information was gathered by executing the file inside Cuckoo Sandbox.

Summary

Successfully executed process in sandbox.

Summary

{
    "dll_loaded": [
        "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll"
    ],
    "file_opened": [
        "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll"
    ],
    "command_line": [
        "\"C:\\Windows\\System32\\rundll32.exe\" C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll,DllMain"
    ],
    "file_exists": [
        "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll",
        "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll.manifest"
    ],
    "file_read": [
        "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll"
    ],
    "regkey_read": [
        "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\OLE\\PageAllocatorSystemHeapIsPrivate",
        "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\GRE_Initialize\\DisableMetaFiles",
        "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\OLE\\PageAllocatorUseSystemHeap"
    ]
}

Generic

[
    {
        "process_path": "C:\\Windows\\System32\\rundll32.exe",
        "process_name": "rundll32.exe",
        "pid": 2968,
        "summary": {
            "file_exists": [
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll",
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll.manifest"
            ],
            "regkey_read": [
                "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\OLE\\PageAllocatorSystemHeapIsPrivate",
                "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\OLE\\PageAllocatorUseSystemHeap"
            ]
        },
        "first_seen": 1578120786.828125,
        "ppid": 2800
    },
    {
        "process_path": "C:\\Windows\\SysWOW64\\rundll32.exe",
        "process_name": "rundll32.exe",
        "pid": 2800,
        "summary": {
            "dll_loaded": [
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll"
            ],
            "file_opened": [
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll"
            ],
            "command_line": [
                "\"C:\\Windows\\System32\\rundll32.exe\" C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll,DllMain"
            ],
            "file_exists": [
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll",
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll.manifest"
            ],
            "file_read": [
                "C:\\Users\\cuck\\AppData\\Local\\Temp\\7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b.bin.dll"
            ],
            "regkey_read": [
                "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\GRE_Initialize\\DisableMetaFiles"
            ]
        },
        "first_seen": 1578120786.671875,
        "ppid": 2924
    },
    {
        "process_path": "C:\\Windows\\System32\\lsass.exe",
        "process_name": "lsass.exe",
        "pid": 476,
        "summary": {},
        "first_seen": 1578120786.34375,
        "ppid": 376
    }
]

Signatures

[
    {
        "markcount": 1,
        "families": [],
        "description": "The file contains an unknown PE resource name possibly indicative of a packer",
        "severity": 1,
        "marks": [
            {
                "category": "resource name",
                "ioc": "TYPELIB",
                "type": "ioc",
                "description": null
            }
        ],
        "references": [],
        "name": "pe_unknown_resource_name"
    },
    {
        "markcount": 1,
        "families": [],
        "description": "One or more processes crashed",
        "severity": 1,
        "marks": [
            {
                "call": {
                    "category": "__notification__",
                    "status": 1,
                    "stacktrace": [],
                    "raw": [
                        "stacktrace"
                    ],
                    "api": "__exception__",
                    "return_value": 0,
                    "arguments": {
                        "stacktrace": "D\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n2\n6\n1\nf\n1\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n7\nc\nd\n3\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nc\n7\nc\nd\n3\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n2\n6\n2\n6\n0\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n7\nc\n6\n4\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nc\n7\nc\n6\n4\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n1\nf\na\n5\n3\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\ne\n4\n7\n1\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nc\ne\n4\n7\n1\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n1\nd\n5\nf\n0\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n1\n0\n8\nd\n4\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nd\n0\n8\nd\n4\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n2\n3\n5\n1\nc\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\na\n9\na\n8\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nc\na\n9\na\n8\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n2\n4\nc\ne\na\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n9\n1\nd\na\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nc\n9\n1\nd\na\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n1\n1\n0\n5\nd\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n1\nc\ne\n6\n7\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nd\nc\ne\n6\n7\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n1\n5\nb\nd\n2\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n1\n8\n2\nf\n2\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nd\n8\n2\nf\n2\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n1\n3\nf\n3\n9\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n1\n9\nf\n8\nb\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nd\n9\nf\n8\nb\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n1\n6\n7\nb\n0\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n1\n7\n7\n1\n4\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\nd\n7\n7\n1\n4\n\n\nD\nl\nl\nC\na\nn\nU\nn\nl\no\na\nd\nN\no\nw\n-\n0\nx\n4\n8\n9\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n2\nd\na\n3\nb\n \n@\n \n0\nx\n7\nf\ne\nf\n0\na\ne\nd\na\n3\nb\n\n\nD\nl\nl\nG\ne\nt\nC\nl\na\ns\ns\nO\nb\nj\ne\nc\nt\n+\n0\nx\n1\nc\n4\nb\ne\n \n7\nb\nf\nf\n9\nf\ne\nb\nf\nf\n1\n6\n3\nb\n4\n5\nd\nc\na\n3\n8\n1\n4\n2\n0\n1\ne\n1\n5\n2\n0\n4\n2\n4\na\nf\nd\na\n6\ne\n2\n6\n9\n6\n5\nf\n8\n8\nf\nb\na\n1\n8\nd\n7\n9\n7\na\n4\nb\nd\n9\n9\nb\n+\n0\nx\n4\na\n3\na\n6\n \n@\n \n0\nx\n7\nf\ne\nf\n0\nb\n0\na\n3\na\n6\n\n\nT\np\nA\nl\nl\no\nc\nT\ni\nm\ne\nr\n+\n0\nx\nb\n0\n8\n \nR\nt\nl\nI\nn\ni\nt\ni\na\nl\ni\nz\ne\nC\nr\ni\nt\ni\nc\na\nl\nS\ne\nc\nt\ni\no\nn\nE\nx\n-\n0\nx\n3\n1\n8\n \nn\nt\nd\nl\nl\n+\n0\nx\n3\nb\n0\nd\n8\n \n@\n \n0\nx\n7\n7\n9\ne\nb\n0\nd\n8\n\n\nR\nt\nl\nC\nr\ne\na\nt\ne\nU\nn\ni\nc\no\nd\ne\nS\nt\nr\ni\nn\ng\nF\nr\no\nm\nA\ns\nc\ni\ni\nz\n+\n0\nx\ne\na\n \nL\nd\nr\nL\no\na\nd\nD\nl\nl\n-\n0\nx\n2\n4\n6\n \nn\nt\nd\nl\nl\n+\n0\nx\n2\n7\n8\n4\na\n \n@\n \n0\nx\n7\n7\n9\nd\n7\n8\n4\na\n\n\nL\nd\nr\nL\no\na\nd\nD\nl\nl\n+\n0\nx\n9\ne\n \nR\nt\nl\nO\np\ne\nn\nC\nu\nr\nr\ne\nn\nt\nU\ns\ne\nr\n-\n0\nx\n4\n4\n2\n \nn\nt\nd\nl\nl\n+\n0\nx\n2\n7\nb\n2\ne\n \n@\n \n0\nx\n7\n7\n9\nd\n7\nb\n2\ne\n\n\nN\ne\nw\n_\nn\nt\nd\nl\nl\n_\nL\nd\nr\nL\no\na\nd\nD\nl\nl\n+\n0\nx\na\nf\n \nN\ne\nw\n_\nn\nt\nd\nl\nl\n_\nL\nd\nr\nU\nn\nl\no\na\nd\nD\nl\nl\n-\n0\nx\nd\n9\n \n@\n \n0\nx\n6\n5\na\n9\nf\n8\n3\n1\n\n\nL\no\na\nd\nL\ni\nb\nr\na\nr\ny\nE\nx\nW\n+\n0\nx\n1\n9\nc\n \nF\nr\ne\ne\nS\ni\nd\n-\n0\nx\na\n4\n \nk\ne\nr\nn\ne\nl\nb\na\ns\ne\n+\n0\nx\na\n0\n5\nc\n \n@\n \n0\nx\n7\nf\ne\nf\nd\na\n1\na\n0\n5\nc\n\n\nr\nu\nn\nd\nl\nl\n3\n2\n+\n0\nx\n2\nb\n5\n0\n \n@\n \n0\nx\nf\nf\na\nb\n2\nb\n5\n0\n\n\nr\nu\nn\nd\nl\nl\n3\n2\n+\n0\nx\n2\ne\n6\na\n \n@\n \n0\nx\nf\nf\na\nb\n2\ne\n6\na\n\n\nr\nu\nn\nd\nl\nl\n3\n2\n+\n0\nx\n3\nb\n7\na\n \n@\n \n0\nx\nf\nf\na\nb\n3\nb\n7\na\n\n\nB\na\ns\ne\nT\nh\nr\ne\na\nd\nI\nn\ni\nt\nT\nh\nu\nn\nk\n+\n0\nx\nd\n \nC\nr\ne\na\nt\ne\nT\nh\nr\ne\na\nd\n-\n0\nx\n5\n3\n \nk\ne\nr\nn\ne\nl\n3\n2\n+\n0\nx\n1\n6\n5\n2\nd\n \n@\n \n0\nx\n7\n7\n7\na\n6\n5\n2\nd\n\n\nR\nt\nl\nU\ns\ne\nr\nT\nh\nr\ne\na\nd\nS\nt\na\nr\nt\n+\n0\nx\n2\n1\n \ns\nt\nr\nc\nh\nr\n-\n0\nx\n3\nd\nf\n \nn\nt\nd\nl\nl\n+\n0\nx\n2\nc\n5\n2\n1\n \n@\n \n0\nx\n7\n7\n9\nd\nc\n5\n2\n1",
                        "registers": {
                            "r14": 0,
                            "r9": 20034,
                            "rcx": 17836999184420,
                            "rsi": 0,
                            "r10": 20033,
                            "rbx": 0,
                            "rdi": 0,
                            "r11": 34359738890,
                            "r8": 8791541380204,
                            "rdx": -5589276358141402848,
                            "rbp": 0,
                            "r15": 0,
                            "r12": 0,
                            "rsp": 2160960,
                            "rax": -5589258529732153084,
                            "r13": 0
                        },
                        "exception": {
                            "instruction_r": "4a 89 04 d3 45 8b d1 4d 3b d3 72 d9 48 83 c4 20",
                            "instruction": "mov qword ptr [rbx + r10*8], rax",
                            "exception_code": "0xc0000005",
                            "symbol": "DllCanUnloadNow-0x261f1 7bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b+0x7cd3",
                            "address": "0x7fef0ac7cd3"
                        }
                    },
                    "time": 1578120786.953125,
                    "tid": 2588,
                    "flags": {}
                },
                "pid": 2968,
                "type": "call",
                "cid": 67
            }
        ],
        "references": [],
        "name": "raises_exception"
    }
]

Yara

The Yara rules did not detect anything in the file.

Network

{
    "tls": [],
    "udp": [
        {
            "src": "192.168.56.101",
            "dst": "192.168.56.255",
            "offset": 546,
            "time": 3.0785341262817383,
            "dport": 137,
            "sport": 137
        },
        {
            "src": "192.168.56.101",
            "dst": "192.168.56.255",
            "offset": 5874,
            "time": 9.079732179641724,
            "dport": 138,
            "sport": 138
        },
        {
            "src": "192.168.56.101",
            "dst": "224.0.0.252",
            "offset": 7718,
            "time": 3.0119690895080566,
            "dport": 5355,
            "sport": 51001
        },
        {
            "src": "192.168.56.101",
            "dst": "224.0.0.252",
            "offset": 8046,
            "time": 1.0187411308288574,
            "dport": 5355,
            "sport": 53595
        },
        {
            "src": "192.168.56.101",
            "dst": "224.0.0.252",
            "offset": 8374,
            "time": 3.0192580223083496,
            "dport": 5355,
            "sport": 53848
        },
        {
            "src": "192.168.56.101",
            "dst": "224.0.0.252",
            "offset": 8702,
            "time": 1.5178380012512207,
            "dport": 5355,
            "sport": 54255
        },
        {
            "src": "192.168.56.101",
            "dst": "224.0.0.252",
            "offset": 9030,
            "time": -0.09982180595397949,
            "dport": 5355,
            "sport": 55314
        },
        {
            "src": "192.168.56.101",
            "dst": "224.0.0.252",
            "offset": 9358,
            "time": 3.7603461742401123,
            "dport": 5355,
            "sport": 55880
        },
        {
            "src": "192.168.56.101",
            "dst": "239.255.255.250",
            "offset": 9678,
            "time": 1.5474460124969482,
            "dport": 1900,
            "sport": 1900
        },
        {
            "src": "192.168.56.101",
            "dst": "239.255.255.250",
            "offset": 29088,
            "time": 1.0521740913391113,
            "dport": 3702,
            "sport": 49152
        },
        {
            "src": "192.168.56.101",
            "dst": "239.255.255.250",
            "offset": 37472,
            "time": 3.125622034072876,
            "dport": 1900,
            "sport": 53598
        }
    ],
    "dns_servers": [],
    "http": [],
    "icmp": [],
    "smtp": [],
    "tcp": [],
    "smtp_ex": [],
    "mitm": [],
    "hosts": [],
    "pcap_sha256": "381b56923edab477926d4eb621249f38c733f93535f8da3ab89344e4cbca50c8",
    "dns": [],
    "http_ex": [],
    "domains": [],
    "dead_hosts": [],
    "sorted_pcap_sha256": "ad43cd7d904419b72d4f02d21316f102c98daee0b43b85c543b2e666007f5f4d",
    "irc": [],
    "https_ex": []
}

Screenshots

Screenshot from the sandboxScreenshot from the sandboxScreenshot from the sandbox

tnP9jUZgM.dll removal instructions

The instructions below shows how to remove tnP9jUZgM.dll with help from the FreeFixer removal tool. Basically, you install FreeFixer, scan your computer, check the tnP9jUZgM.dll file for removal, restart your computer and scan it again to verify that tnP9jUZgM.dll has been successfully removed. Here are the removal instructions in more detail:

  1. Download and install FreeFixer: http://www.freefixer.com/download.html
  2. Start FreeFixer and press the Start Scan button. The scan will finish in approximately five minutes.
    Screenshot of Start Scan button
  3. When the scan is finished, locate tnP9jUZgM.dll in the scan result and tick the checkbox next to the tnP9jUZgM.dll file. Do not check any other file for removal unless you are 100% sure you want to delete it. Tip: Press CTRL-F to open up FreeFixer's search dialog to quickly locate tnP9jUZgM.dll in the scan result.
    Red arrow point on the unwanted file
    C:\Program Files (x86)\dJsSTrqCmIE\tnP9jUZgM.dll
  4. Scroll down to the bottom of the scan result and press the Fix button. FreeFixer will now delete the tnP9jUZgM.dll file.
    Screenshot of Fix button
  5. Restart your computer.
  6. Start FreeFixer and scan your computer again. If tnP9jUZgM.dll still remains in the scan result, proceed with the next step. If tnP9jUZgM.dll is gone from the scan result you're done.
  7. If tnP9jUZgM.dll still remains in the scan result, check its checkbox again in the scan result and click Fix.
  8. Restart your computer.
  9. Start FreeFixer and scan your computer again. Verify that tnP9jUZgM.dll no longer appear in the scan result.
Please select the option that best describe your thoughts on the removal instructions given above








Free Questionnaires

Hashes [?]

PropertyValue
MD54979009a3893231aba2245fdeacec403
SHA2567bff9febff163b45dca3814201e1520424afda6e26965f88fba18d797a4bd99b

What will you do with tnP9jUZgM.dll?

To help other users, please let us know what you will do with tnP9jUZgM.dll:



Comments

Please share with the other users what you think about this file. What does this file do? Is it legitimate or something that your computer is better without? Do you know how it was installed on your system? Did you install it yourself or did it come bundled with some other software? Is it running smoothly or do you get some error message? Any information that will help to document this file is welcome. Thank you for your contributions.

I'm reading all new comments so don't hesitate to post a question about the file. If I don't have the answer perhaps another user can help you.

No comments posted yet.

Leave a reply