How to remove A0007998.exe
- File Details
- Overview
- Analysis
A0007998.exe
The module A0007998.exe has been detected as PUP.OpenCandy
File Details
Product Name: |
|
Company Name: |
|
MD5: |
37b32285d4295cf4ef2ceab2928f0083 |
Size: |
296 KB |
First Published: |
2017-05-21 20:03:42 (7 years ago) |
Latest Published: |
2020-09-07 03:29:33 (4 years ago) |
Status: |
PUP.OpenCandy (on last analysis) |
|
Analysis Date: |
2020-09-07 03:29:33 (4 years ago) |
Overview
%appdata%\opencandy\70e2af8e6a384fe08e6826169c73cda3 |
%appdata%\opencandy\f8eb1788250546938d6ba589da147da6 |
%sysdrive%\windows.old\users\start_travel\appdata\roaming\opencandy\9d5ab1d11f814f6c8ef44ff0c3cf5085 |
%appdata%\opencandy\e3bc1744ef574a0ca28daaad581d55a6 |
%appdata%\opencandy\29745d49f51c44c48f478b4a00a1cb16 |
%appdata%\opencandy\156ca9c6721e41f5b0898b1c74cd3679 |
%appdata%\opencandy\2cd25f6bddbf4109b284818b40b258f5 |
%appdata%\opencandy |
%sysdrive%\system volume information\_restore{94120078-57bd-469d-811c-5d09acf9cbf9} |
%desktop%\respaldo vecina\doris\appdata\roaming\opencandy |
LatestDLMgr.exe |
A0007998.exe |
|
15.4% |
|
|
10.3% |
|
|
10.3% |
|
|
7.7% |
|
|
7.7% |
|
|
5.1% |
|
|
5.1% |
|
|
5.1% |
|
|
5.1% |
|
|
5.1% |
|
|
5.1% |
|
|
5.1% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
Windows 10 |
51.3% |
|
Windows 7 |
33.3% |
|
Windows XP |
7.7% |
|
Windows 8.1 |
5.1% |
|
Windows 8 |
2.6% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000b70d0 |
Name |
Size of data |
MD5 |
UPX0 |
0 |
00000000000000000000000000000000 |
UPX1 |
249344 |
72ff83d8b0259967668e7769979161c2 |
.rsrc |
46592 |
1d458ddd9ff8f5d80c87600a7718233b |