How to remove A0013738.exe
- File Details
- Overview
- Analysis
A0013738.exe
The module A0013738.exe has been detected as Trojan.Occamy
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
a9c8dcdadfff68be588cb37f5b05afa3 |
| Size: |
190 KB |
| First Published: |
2018-09-29 09:24:21 (7 years ago) |
| Latest Published: |
2021-01-13 19:53:13 (4 years ago) |
| Status: |
Trojan.Occamy (on last analysis) |
|
| Analysis Date: |
2021-01-13 19:53:13 (4 years ago) |
| %profile%\downloads\compressed |
| %profile%\downloads\compressed\clean_space_pro_7.26 |
| %desktop%\00 - işi bitti\cyrobo clean space pro v7.22 |
| %sysdrive%\clean_space_pro_7.26 |
| %programfiles% |
| %sysdrive%\ccpr727-mw |
| %profile%\downloads\compressed\cyrobo.clean.space.pro.7.26\cyrobo.clean.space.pro.7.26 |
| %programfiles%\panda security\panda security protection |
| %sysdrive%\system volume information\_restore{67d22d7a-1280-447c-9663-50bd6e5eca5d} |
| %profile%\downloads\proğram\cyrobo.clean.space.pro.7.27.2b |
| Activator.exe |
| A0013738.exe |
| A0013701.exe |
| A0013720.exe |
|
17.8% |
|
|
13.7% |
|
|
8.2% |
|
|
5.5% |
|
|
4.1% |
|
|
4.1% |
|
|
4.1% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
| Windows 10 |
45.3% |
|
| Windows 7 |
34.7% |
|
| Windows 8.1 |
9.3% |
|
| Windows XP |
8.0% |
|
| Windows 8 |
2.7% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00027a3e |
| MVID: |
aa06e473-6c22-4af7-956c-ca11a9edfdc9 |
| Typelib ID: |
16691344-f34e-42cf-ba41-5c8f0f35512c |
| Name |
Size of data |
MD5 |
| .text |
154624 |
22a954ec61fc0188a8938a6a0f572dfc |
| .sdata |
512 |
2d6537571ce305555df8918cc5216796 |
| .rsrc |
37888 |
c816bb95fcacd1469519396022243581 |
| .reloc |
512 |
1fe92e9781659620d4b4cc5710d21574 |