How to remove A0006943.exe
- File Details
- Overview
- Analysis
A0006943.exe
The module A0006943.exe has been detected as PUP.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
cdca25e2156b8667cac97a20d0e9ac60 |
Size: |
654 KB |
First Published: |
2017-08-14 19:05:05 (7 years ago) |
Latest Published: |
2019-06-13 21:51:21 (5 years ago) |
Status: |
PUP.Gen (on last analysis) |
|
Analysis Date: |
2019-06-13 21:51:21 (5 years ago) |
Overview
%localappdata%\elements browser\application\49.0.2652.87 |
%sysdrive%\system volume information\_restore{ffc538ad-d1e5-4fce-aac6-3cf2f795ddd4}\rp4 |
%profile%\дминистратор\local settings\application data\elements browser\application\49.0.2652.87 |
%localappdata%\elements browser\application |
%sysdrive%\user\appdata\local\elements browser\application\49.0.2652.87\installer\elementsbrowser.7z\elementsbrowser-bin |
%sysdrive%\user\appdata\local\elements browser\application |
%sysdrive%\copy\appdata\local\elements browser\application |
%sysdrive%\copy\appdata\local\elements browser\application\49.0.2652.87\installer\elementsbrowser.7z\elementsbrowser-bin |
%localappdata%\elements browser\temp\source36820_11399\elementsbrowser-bin |
%localappdata%\elements browser\application |
delegate_execute.exe |
A0006943.exe |
A0006923.exe |
|
55.7% |
|
|
37.7% |
|
|
3.3% |
|
|
1.6% |
|
|
1.6% |
|
Windows 10 |
46.8% |
|
Windows 7 |
32.3% |
|
Windows 8.1 |
11.3% |
|
Windows XP |
6.5% |
|
Windows 8 |
1.6% |
|
Windows Server 2008 R2 |
1.6% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0003284f |
Name |
Size of data |
MD5 |
.text |
332288 |
0ad9e55a0e9fb42c35d44a0e46f776b9 |
.rdata |
306688 |
05d494eae7040c178cb0ccc10d153044 |
.data |
7168 |
71d70d8707cd61583273db46d1e04159 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
_RDATA |
512 |
6a4d701a80c9128ba46180eb8218a58f |
.rsrc |
3072 |
d865168fe506ba5bea88d7a48d6bb3dd |
.reloc |
13824 |
6243ffaf632874179a3a0e13397bd1af |