How to remove A0006856.exe
- File Details
- Overview
- Analysis
A0006856.exe
The module A0006856.exe has been detected as PUP.DriverToolkit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
0fdd55fad91495480039880ba4f30834 |
Size: |
1022 KB |
First Published: |
2017-05-21 15:03:39 (7 years ago) |
Latest Published: |
2023-01-06 23:42:07 (2 years ago) |
Status: |
PUP.DriverToolkit (on last analysis) |
|
Analysis Date: |
2023-01-06 23:42:07 (2 years ago) |
Overview
%programfiles%\drivertoolkit |
%programfiles%\difx\cbf0fe544f523718 |
%sysdrive%\system volume information\_restore{ac9dde38-bca3-4eab-8bf6-d625224cf9d9}\rp16 |
%sysdrive%\system volume information\_restore{ccbe18a5-b19c-4fb7-84a5-aaea3415f8c4}\rp6 |
%sysdrive%\system volume information\_restore{d09f9a31-5302-4944-a394-79a700035250}\rp182 |
%sysdrive%\system volume information\_restore{d14d94e3-5831-4be9-835a-9a8e318a8939}\rp32 |
%sysdrive%\system volume information\_restore{cb690f5c-b055-4432-b402-4385be4f7b10}\rp13 |
%sysdrive%\$recycle.bin\s-1-5-21-844230419-852404347-2296254423-1001 |
%sysdrive%\desktop\drivertoolkit |
%sysdrive%\system volume information\_restore{b71a8adb-2920-41ef-b4af-735fed1a133e}\rp17 |
DPInst64.exe |
A0006856.exe |
A0005462.exe |
A0076513.exe |
A0005504.exe |
A0003187.exe |
$RC0ALLN.exe |
A0005098.exe |
A0043033.exe |
A0068009.exe |
dpinst64.exe |
A0055398.exe |
A0072900.exe |
A0116049.exe |
A0072232.exe |
A0119079.exe |
A0112660.exe |
|
7.8% |
|
|
6.1% |
|
|
6.0% |
|
|
4.8% |
|
|
4.7% |
|
|
4.3% |
|
|
4.2% |
|
|
3.7% |
|
|
3.7% |
|
|
3.5% |
|
|
3.4% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.0% |
|
|
1.9% |
|
|
1.8% |
|
|
1.6% |
|
|
1.6% |
|
|
1.5% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.0% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
49.0% |
|
Windows 7 |
36.7% |
|
Windows 8.1 |
8.9% |
|
Windows XP |
3.3% |
|
Windows 8 |
0.9% |
|
Windows Vista |
0.6% |
|
Windows Server 2016 |
0.4% |
|
Windows Embedded Standard |
0.2% |
|
Windows Server 2008 R2 |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000100000000 |
Entry Address: |
0x0005cba8 |
Name |
Size of data |
MD5 |
.text |
522752 |
ae27ad8303f4cc33f8ec441de06c7c51 |
.data |
2560 |
8f85419e9c2896562538ec7cacf29f41 |
.pdata |
28160 |
b1373dc60e5c5ab762740c34b90fc12b |
.rsrc |
482816 |
47eb1c10f355653072200c98403af250 |
.reloc |
4096 |
dfe2cab536b3702cd7bc3316f20c6105 |