How to remove A0037471.dll

A0037471.dll

The module A0037471.dll has been detected as Adware.Downloader

A0037471.dll
Product Name:

Python

Company Name:

Python Software Foundation

MD5: 7f2c9fe70bb6a51194ed60a8811405ba
Size: 2 MB
First Published: 2017-05-25 09:04:29 (7 years ago)
Latest Published: 2021-10-24 20:37:27 (3 years ago)
Status: Adware.Downloader (on last analysis)
Analysis Date: 2021-10-24 20:37:27 (3 years ago)
Signed By: Catalina Group Limited
Status: Valid
%localappdata%\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%profile%\bd\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%profile%\ser\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%profile%\annan6\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries\win
%sysdrive%\system volume information\_restore{707e28ae-030b-44df-b89d-07076ebdcb41}\rp269
%localappdata%\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries
%sysdrive%\system volume information\_restore{c52b72cc-fd71-4681-b415-f03a3112c2d4}
%profile%\enatual\local settings\application data\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries
%profile%\dministrador\configuraciĆ³n local\datos de programa\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_0\binaries
%localappdata%\catalinagroup\citrio\user data\default\extensions\dcagnhpbnggmbihndfkkhfjojgbaaedo\1.2.40_1\binaries
python34.dll
A0037471.dll
A0456496.dll
26.9%
7.5%
5.2%
5.2%
4.5%
4.5%
4.5%
3.7%
3.0%
3.0%
2.2%
2.2%
1.5%
1.5%
1.5%
1.5%
1.5%
1.5%
1.5%
1.5%
1.5%
1.5%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
0.7%
Windows 10 42.6%
Windows 7 33.1%
Windows 8.1 17.6%
Windows XP 5.9%
Windows 8 0.7%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x1e000000
Entry Address: 0x0013b9c9

PE Sections:

Name Size of data MD5
.text 1290240 72d0c48834442aba7bc528f2c019a990
.rdata 961024 ee917a496610ab63c941d95b3770b64c
.data 399872 5bde193d3395c50d018c94b33906d064
.rsrc 2048 737b53c3027a45e99712930885f0a03d
.reloc 82432 541d8d0aaf89f944b2c219ee5a2d0d96

More information:

Download GridinSoft Anti-Malware - Removal tool for A0037471.dll