Information about $R8AQU0I.exe
- File Details
- Overview
- Analysis
$R8AQU0I.exe
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8fff3c0de9f4fc94db3be18dd63df47a |
Size: |
7 MB |
First Published: |
2017-07-17 21:16:54 (7 years ago) |
Latest Published: |
2021-01-04 14:49:38 (4 years ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2021-01-04 14:49:38 (4 years ago) |
Overview
Signed By: |
Pokki |
Status: |
Valid |
%localappdata%\pokki\engine |
%sysdrive%\adwcleaner\quarantine\x3cf3ednhm\engine |
%localappdata%\pokki |
%sysdrive%\$recycle.bin |
%localappdata%\~pokki |
%localappdata%\pokki |
%localappdata%\pokki |
%windir%\serviceprofiles\localservice\appdata\local\pokki |
%windir%\serviceprofiles\networkservice\appdata\local\pokki |
|
27.7% |
|
|
12.8% |
|
|
8.5% |
|
|
6.4% |
|
|
6.4% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
4.3% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
|
2.1% |
|
Windows 8.1 |
66.0% |
|
Windows 10 |
34.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0039b022 |
Name |
Size of data |
MD5 |
.text |
5200896 |
ee1d76d4812296a323632b8f9182df49 |
.rdata |
903680 |
21ff5297a5d2a46565dd628f27f7cfbb |
.data |
128000 |
18591df90dca203363531c9940f5cfe3 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
1812992 |
51aef7e4904505082d1339411c8306d8 |
.reloc |
216064 |
4cb9e84a64164ff4579bb3048a70ff03 |