How to remove A0006855.exe
- File Details
- Overview
- Analysis
A0006855.exe
The module A0006855.exe has been detected as PUP.DriverToolkit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
978c25b404d3a31612efbb01c1e981d8 |
Size: |
900 KB |
First Published: |
2017-05-21 15:03:37 (7 years ago) |
Latest Published: |
2023-01-06 23:41:53 (2 years ago) |
Status: |
PUP.DriverToolkit (on last analysis) |
|
Analysis Date: |
2023-01-06 23:41:53 (2 years ago) |
Overview
%programfiles%\drivertoolkit |
%sysdrive%\system volume information\_restore{ac9dde38-bca3-4eab-8bf6-d625224cf9d9}\rp16 |
%sysdrive%\system volume information\_restore{ccbe18a5-b19c-4fb7-84a5-aaea3415f8c4}\rp6 |
%sysdrive%\system volume information\_restore{d09f9a31-5302-4944-a394-79a700035250}\rp182 |
%sysdrive%\system volume information\_restore{d14d94e3-5831-4be9-835a-9a8e318a8939}\rp32 |
%sysdrive%\system volume information\_restore{cb690f5c-b055-4432-b402-4385be4f7b10}\rp13 |
%sysdrive%\$recycle.bin\s-1-5-21-844230419-852404347-2296254423-1001 |
%appdata%\genie9\zoolz\jobs\{6e820f39-1f0f-4c22-a9f6-5e7cae6f6fa7}\data\backupcache |
%sysdrive%\desktop\drivertoolkit |
%sysdrive%\system volume information\_restore{b71a8adb-2920-41ef-b4af-735fed1a133e}\rp17 |
DPInst32.exe |
A0006855.exe |
A0005463.exe |
A0076514.exe |
A0005505.exe |
A0003186.exe |
$R58YSOX.exe |
888755568403397750.exe |
A0005099.exe |
A0043034.exe |
A0068010.exe |
A0055399.exe |
A0112659.exe |
A0072901.exe |
A0072231.exe |
A0119078.exe |
A0116048.exe |
|
8.2% |
|
|
6.4% |
|
|
6.0% |
|
|
5.2% |
|
|
5.0% |
|
|
4.6% |
|
|
4.2% |
|
|
4.0% |
|
|
3.7% |
|
|
3.6% |
|
|
3.5% |
|
|
2.8% |
|
|
2.4% |
|
|
2.2% |
|
|
1.9% |
|
|
1.7% |
|
|
1.7% |
|
|
1.5% |
|
|
1.5% |
|
|
1.4% |
|
|
1.4% |
|
|
1.3% |
|
|
1.2% |
|
|
1.2% |
|
|
1.1% |
|
|
1.0% |
|
|
0.9% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
47.8% |
|
Windows 7 |
37.5% |
|
Windows 8.1 |
9.1% |
|
Windows XP |
3.4% |
|
Windows 8 |
0.9% |
|
Windows Vista |
0.6% |
|
Windows Server 2016 |
0.5% |
|
Windows Embedded Standard |
0.2% |
|
Windows Server 2008 R2 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x01000000 |
Entry Address: |
0x0002116a |
Name |
Size of data |
MD5 |
.text |
401408 |
25c07ee254c1352fd2144e2ee631429a |
.data |
6144 |
933edbe2ee0a4325f62952ca3f039d26 |
.rsrc |
482816 |
ae3d98ccb02c2b4e1b00c49d41a9b9e2 |
.reloc |
24576 |
8641f863a63c7a1728b4cd1854104597 |