How to remove A0015010.exe
- File Details
- Overview
- Analysis
A0015010.exe
The module A0015010.exe has been detected as PUP.Toolbar
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
d1e06d68a7a40c995acfe76598bd54e0 |
| Size: |
119 KB |
| First Published: |
2017-06-12 19:03:50 (8 years ago) |
| Latest Published: |
2021-02-11 04:16:58 (4 years ago) |
| Status: |
PUP.Toolbar (on last analysis) |
|
| Analysis Date: |
2021-02-11 04:16:58 (4 years ago) |
Overview
| %programfiles%\spyware terminator\tools |
| %desktop%\spywaqre terminetor premiun 2015\spyware terminator premium 2015 3.0.1.112 portable\data\roaming\modified\@programfilesx86@\spyware terminator\tools |
| %sysdrive%\windows.old.000\program files (x86)\spyware terminator\tools |
| %sysdrive%\system volume information\_restore{115a6895-6e26-46ed-ab4e-4cfd2c2141b8}\rp36 |
| %sysdrive%\cce_quarantine |
| %programfiles%\spyware terminator |
| %sysdrive% |
| %sysdrive%\system volume information\_restore{83e9558c-6427-438e-8170-58877fd8ff61} |
| %programfiles%\~spyware terminator |
| %sysdrive%\system volume information\_restore{34e962d2-6650-43fb-b380-a60b0f443bed} |
| AVServer.exe |
| A0015010.exe |
| {899FEACE-787C-422E-8E8A-568A87F272EC} |
| AVServer.new |
| A0005739.exe |
| A0117172.exe |
|
17.6% |
|
|
12.6% |
|
|
11.4% |
|
|
9.4% |
|
|
7.1% |
|
|
4.3% |
|
|
3.4% |
|
|
2.7% |
|
|
2.7% |
|
|
2.5% |
|
|
2.3% |
|
|
2.3% |
|
|
2.1% |
|
|
1.8% |
|
|
1.6% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.1% |
|
|
1.1% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
| Windows 10 |
59.3% |
|
| Windows 7 |
28.4% |
|
| Windows 8.1 |
8.2% |
|
| Windows XP |
2.3% |
|
| Windows Vista |
0.9% |
|
| Windows 8 |
0.7% |
|
| Windows Server 2003 |
0.2% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000066c6 |
| Name |
Size of data |
MD5 |
| .text |
69632 |
d5e9a2f256fb2899c55c884c8a033400 |
| .rdata |
28672 |
85c3debfb258cbac5d41f5ad7bda35bb |
| .data |
2560 |
cf781ca475d34aee9fac34f59df91a29 |
| .gfids |
512 |
20bad85c4d04af0b1d2f0d0fe9a1b4c2 |
| .rsrc |
1536 |
8394e71d9c653ae5a28d90a68b34d778 |
| .reloc |
5120 |
3341c149ad7718980597acae370258ff |