How to remove A0037471.dll

A0037471.dll

The module A0037471.dll has been detected as Adware.Downloader

A0037471.dll
Product Name:

Python

Company Name:

Python Software Foundation

MD5: 7f2c9fe70bb6a51194ed60a8811405ba
Size: 2 MB
First Published: 2017-05-25 09:04:29 (8 years ago)
Latest Published: 2025-03-30 23:01:40 (5 months ago)
Status: Adware.Downloader (on last analysis)
Analysis Date: 2025-03-30 23:01:40 (5 months ago)
Signed By: Catalina Group Limited
Status: Valid
%localappdata%\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%profile%\bd\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%profile%\ser\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%profile%\annan6\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%sysdrive%\system volume information\_restore{707e28ae-030b-44df-b89d-07076ebdcb41}\rp269
%localappdata%\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries
%sysdrive%\system volume information\_restore{c52b72cc-fd71-4681-b415-f03a3112c2d4}
%profile%\enatual\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries
%profile%\dministrador\configuración local\datos de programa\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries
%localappdata%\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_1\binaries
python34.dll
A0037471.dll
A0456496.dll
Brazil 26.7%
Egypt 7.4%
Taiwan 5.2%
Portugal 5.2%
Algeria 4.4%
Thailand 4.4%
Poland 4.4%
Russia 3.7%
United States 3.0%
Mexico 3.0%
Vietnam 2.2%
Indonesia 2.2%
Spain 1.5%
Ukraine 1.5%
Turkey 1.5%
Argentina 1.5%
Libya 1.5%
Saudi Arabia 1.5%
Sweden 1.5%
Greece 1.5%
Jordan 1.5%
Venezuela 1.5%
China 1.5%
France 0.7%
Lithuania 0.7%
Czech Republic 0.7%
Canada 0.7%
India 0.7%
Hong Kong 0.7%
Panama 0.7%
Belarus 0.7%
Iran 0.7%
Hungary 0.7%
Morocco 0.7%
Nicaragua 0.7%
Syria 0.7%
Iraq 0.7%
Malaysia 0.7%
United Kingdom 0.7%
Windows 10 42.3%
Windows 7 33.6%
Windows 8.1 17.5%
Windows XP 5.8%
Windows 8 0.7%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x1e000000
Entry Address: 0x0013b9c9

PE Sections:

Name Size of data MD5
.text 1290240 72d0c48834442aba7bc528f2c019a990
.rdata 961024 ee917a496610ab63c941d95b3770b64c
.data 399872 5bde193d3395c50d018c94b33906d064
.rsrc 2048 737b53c3027a45e99712930885f0a03d
.reloc 82432 541d8d0aaf89f944b2c219ee5a2d0d96

More information:

Download GridinSoft Anti-Malware - Removal tool for A0037471.dll
­