Information about A0017790.exe
- File Details
- Overview
- Analysis
A0017790.exe
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b5b2829b37336bb266b179700398b421 |
Size: |
997 KB |
First Published: |
2017-05-21 18:08:08 (7 years ago) |
Latest Published: |
2024-04-16 23:07:06 (9 months ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2024-04-16 23:07:06 (9 months ago) |
Overview
%programfiles%\freetime\formatfactory\ffmodules\package\ask |
%programfiles%\formatfactory\ffmodules\package\ask |
%desktop%\formatfactory_setup\ffmodules\package\ask |
%programfiles%\格式工廠\app\formatfactory\ffmodules\package\ask |
%localappdata%\temp |
%sysdrive%\system volume information\_restore{0a66d4aa-bcdf-416f-b650-275a5cadaef5}\rp13 |
%profile%\downloads\格式工廠\app\formatfactory\ffmodules\package\ask |
%profile%\downloads\formatfactory\格式工廠\app\formatfactory\ffmodules\package\ask |
%desktop%\群亞電腦\office\office_研習軟體\格式工廠\app\formatfactory\ffmodules\package\ask |
%desktop%\群亞電腦\office\powerpoint_練習1\office_研習軟體\格式工廠\app\formatfactory\ffmodules\package\ask |
AskPIP_FF_.exe |
A0017790.exe |
A0049354.exe |
|
25.5% |
|
|
16.3% |
|
|
8.7% |
|
|
6.4% |
|
|
5.8% |
|
|
4.6% |
|
|
4.4% |
|
|
3.6% |
|
|
3.0% |
|
|
2.8% |
|
|
1.8% |
|
|
1.2% |
|
|
1.2% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
Windows 7 |
53.3% |
|
Windows 10 |
32.8% |
|
Windows 8.1 |
8.0% |
|
Windows XP |
4.4% |
|
Windows 8 |
1.0% |
|
Windows Server 2008 R2 |
0.3% |
|
Windows Server 2012 R2 |
0.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000763c8 |
Name |
Size of data |
MD5 |
.text |
620032 |
83dd74ce6911a9fadbd8700f54e0bc06 |
.rdata |
137728 |
c39799a58da786c0929b9428d6d3c14c |
.data |
23040 |
ac209ca380309bae200dfee6ce323558 |
.rsrc |
184832 |
74247aae534109c2367a4cd156132dbf |
.reloc |
48640 |
81cec15996cc4306dca13b60a63a40e0 |