Information about A0006857.exe

A0006857.exe

Product Name:

7-Zip

Company Name:

Igor Pavlov

MD5: 64a25f43ac18508cc26a351b7c3f4b1b
Size: 166 KB
First Published: 2017-05-21 07:08:17 (7 years ago)
Latest Published: 2024-11-18 23:01:49 (6 days ago)
Status: Undefined (on last analysis)
Analysis Date: 2024-11-18 23:01:49 (6 days ago)
Signed By: Megaify Software Co.,Ltd.
Status: Valid
%programfiles%\drivertoolkit
%sysdrive%\$recycle.bin\s-1-5-21-3196843707-3211194559-215823176-1000\$rk6wpeb
%sysdrive%\adwcleaner\quarantine\files\vhbhxapmqrxrxozjfenzdllnqjhhpuxp
%sysdrive%\adwcleaner\quarantine\files\kprqatmwjhkekkftyskhsuzqqafcsvvq
%sysdrive%\system volume information\_restore{ac9dde38-bca3-4eab-8bf6-d625224cf9d9}\rp16
%sysdrive%\adwcleaner\quarantine\files\dphisnwozuhhupyrefssmcpmtnvejcds
%sysdrive%\system volume information\_restore{ccbe18a5-b19c-4fb7-84a5-aaea3415f8c4}\rp6
%sysdrive%\adwcleaner\quarantine\files\bfrevrbxsvgrufnjfqfgfckxnfjdrptb
%sysdrive%\system volume information\_restore{d09f9a31-5302-4944-a394-79a700035250}\rp182
%sysdrive%\system volume information\_restore{d14d94e3-5831-4be9-835a-9a8e318a8939}\rp32
extract.exe
A0006857.exe
A0005461.exe
A0076512.exe
A0005503.exe
A0003189.exe
$RE3TNYO.exe
A0205459.exe
A0005097.exe
A0043032.exe
A0068008.exe
extract.exe.vir
A0055397.exe
A0043729.exe
$RDRVFN4.exe
A0046353.exe
A0008136.exe
A0119080.exe
A0072899.exe
A0072233.exe
A0116050.exe
A0112661.exe
A0040930.exe
A0193526.exe
A0000578.exe
$RF0JFS4.exe
6.6%
6.5%
6.1%
5.3%
5.0%
4.6%
4.1%
4.1%
3.9%
3.4%
3.0%
2.8%
2.3%
2.1%
2.0%
1.9%
1.5%
1.4%
1.4%
1.3%
1.3%
1.1%
1.1%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.8%
0.8%
0.8%
0.8%
0.8%
0.8%
0.7%
0.6%
0.6%
0.6%
0.5%
0.5%
0.5%
0.5%
0.5%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
Windows 10 46.6%
Windows 7 39.2%
Windows 8.1 9.3%
Windows XP 2.7%
Windows 8 1.3%
Windows Vista 0.4%
Windows Server 2016 0.2%
Windows Server 2008 R2 0.1%
Windows Embedded Standard 0.1%
Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0001d0cc

PE Sections:

Name Size of data MD5
.text 126976 507bceab4a7cf125021eadaed01c8103
.rdata 25088 487830ec8d28f5a0c5fdd4d50611bb12
.data 9728 4b6e617969a011b887802e815abf0acf
.rsrc 1024 ad08dbb8515e11733c92ae196ed348d2

More information: