Information about $R8AQU0I.exe
- File Details
- Overview
- Analysis
$R8AQU0I.exe
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
8fff3c0de9f4fc94db3be18dd63df47a |
| Size: |
7 MB |
| First Published: |
2017-07-17 21:16:54 (8 years ago) |
| Latest Published: |
2021-01-04 14:49:38 (4 years ago) |
| Status: |
Undefined (on last analysis) |
|
| Analysis Date: |
2021-01-04 14:49:38 (4 years ago) |
Overview
| Signed By: |
Pokki |
| Status: |
Valid |
| %localappdata%\pokki\engine |
| %sysdrive%\adwcleaner\quarantine\x3cf3ednhm\engine |
| %localappdata%\pokki |
| %sysdrive%\$recycle.bin |
| %localappdata%\~pokki |
| %localappdata%\pokki |
| %localappdata%\pokki |
| %windir%\serviceprofiles\localservice\appdata\local\pokki |
| %windir%\serviceprofiles\networkservice\appdata\local\pokki |
|
27.7% |
|
|
12.8% |
|
|
8.5% |
|
|
6.4% |
|
|
6.4% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
| Windows 8.1 |
66.0% |
|
| Windows 10 |
34.0% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0039b022 |
| Name |
Size of data |
MD5 |
| .text |
5200896 |
ee1d76d4812296a323632b8f9182df49 |
| .rdata |
903680 |
21ff5297a5d2a46565dd628f27f7cfbb |
| .data |
128000 |
18591df90dca203363531c9940f5cfe3 |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
1812992 |
51aef7e4904505082d1339411c8306d8 |
| .reloc |
216064 |
4cb9e84a64164ff4579bb3048a70ff03 |