How to remove A0004495.exe
- File Details
- Overview
- Analysis
A0004495.exe
The module A0004495.exe has been detected as PUP.MediaGet
File Details
Product Name: |
|
Company Name: |
|
MD5: |
762d81c2e500ff3846503a2cdcf8a2ae |
Size: |
13 MB |
First Published: |
2018-04-03 19:17:03 (6 years ago) |
Latest Published: |
2021-02-01 13:53:40 (3 years ago) |
Status: |
PUP.MediaGet (on last analysis) |
|
Analysis Date: |
2021-02-01 13:53:40 (3 years ago) |
Overview
%localappdata% |
%sysdrive%\adwcleaner\quarantine |
%profile%\dmin\local settings\application data |
%sysdrive%\system volume information\_restore{38a612b0-c4cc-4c6b-9be9-e665dfb5ac3c} |
%mydoc%\mediaget\app |
%sysdrive%\system volume information\_restore{2185c689-9b7a-4bc3-94e0-2598a5cb0751} |
%sysdrive%\$recycle.bin |
%profile%\ser\local settings\application data |
%sysdrive%\$recycle.bin\s-1-5-21-2176414126-2386657705-3215092411-500 |
%sysdrive% |
mediaget.exe |
A0004495.exe |
mediaget.exe.quarantined |
A0204509.exe |
$RZES4RO.exe |
mediaget.exe.DEL.del |
mediaget.VIR |
$RHFA4VY.exe |
A0003933.exe |
mediaget.exe#6E3E7BFE9DC64646 |
|
61.5% |
|
|
19.0% |
|
|
4.5% |
|
|
3.1% |
|
|
2.6% |
|
|
1.1% |
|
|
1.1% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
58.3% |
|
Windows 7 |
30.5% |
|
Windows 8.1 |
9.3% |
|
Windows 8 |
1.1% |
|
Windows XP |
0.8% |
|
Windows Server 2008 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00508e12 |
Name |
Size of data |
MD5 |
.text |
5995520 |
70196c69f7ad37d1221b9811b404be82 |
.rdata |
7377920 |
5e4bb9acc9cc5ae5707be700ed8551a9 |
.data |
114688 |
e0aa745e480fcffa25311311d1cf0f51 |
.rsrc |
131072 |
3fed8df60e2962a0fdf5bb8e4975f73b |
.reloc |
440320 |
e61e2fe1739a7286d4b1d390b42d0fe9 |