How to remove A0006964.exe
- File Details
- Overview
- Analysis
A0006964.exe
The module A0006964.exe has been detected as PUP.WebCompanion
File Details
MD5: |
6c5c984751c6cf9d687f053f619e7570 |
Size: |
308 KB |
First Published: |
2017-05-22 11:21:53 (7 years ago) |
Latest Published: |
2020-10-20 11:45:54 (4 years ago) |
Status: |
PUP.WebCompanion (on last analysis) |
|
Analysis Date: |
2020-10-20 11:45:54 (4 years ago) |
Overview
%programfiles%\lavasoft\web companion\application |
%sysdrive%\adwcleaner\quarantine\files\abxeyuyuaryfuwyhceirdhgminhavogn\application |
%sysdrive%\adwcleaner\quarantine\files\zrkpclxiydxmdoxzjcjcrcovckbgffuo\application |
%sysdrive%\$recycle.bin\s-1-5-21-1568228474-2231782195-3864434625-1000\$r5r9tgq.zip\application |
%temp%\webcompanion.zip\application |
%sysdrive%\adwcleaner\quarantine\files\zrcbaoqinwvudfussrrvnvwnvoszpofj\application |
%sysdrive%\$recycle.bin\s-1-5-21-990944060-4239854331-4054547660-1000\$r0jy582.zip\application |
%sysdrive%\adwcleaner\quarantine\files\zvabvraavmtslelvkovcrhxyjtwclphr\application |
%sysdrive%\adwcleaner\quarantine\files\lmukbgkrkommpbugeyhztkjysoibkcmm\application |
%sysdrive%\system volume information\_restore{ba6600d7-c29b-4b0c-84aa-4427ea32f572}\rp27 |
WebCompanionInstaller.exe |
A0006964.exe |
|
11.2% |
|
|
9.7% |
|
|
7.5% |
|
|
7.5% |
|
|
5.2% |
|
|
3.7% |
|
|
3.7% |
|
|
3.7% |
|
|
3.7% |
|
|
3.0% |
|
|
3.0% |
|
|
3.0% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
Windows 7 |
43.6% |
|
Windows 10 |
42.9% |
|
Windows 8.1 |
10.5% |
|
Windows XP |
1.5% |
|
Windows Vista |
0.8% |
|
Windows Server 2012 R2 |
0.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0004590e |
MVID: |
0102fff3-5cab-43b2-bdf5-8631cc514c9b |
Name |
Size of data |
MD5 |
.text |
276992 |
5d87c291c5711cc373da55cd20259851 |
.rsrc |
26624 |
dc8f34e369913b4afb3d411c66927111 |
.reloc |
512 |
371683949ffb06c8111190d293bda9b3 |