How to remove A0046472.exe
- File Details
- Overview
- Analysis
A0046472.exe
The module A0046472.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
68045b0af5730051b7fa0e3486f57f58 |
Size: |
961 KB |
First Published: |
2017-07-05 12:08:54 (6 years ago) |
Latest Published: |
2018-11-07 17:17:07 (5 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2018-11-07 17:17:07 (5 years ago) |
Overview
%localappdata%\amigo\application\47.5.2526.111\installer |
%localappdata%\amigo\application\47.5.2526.111 |
%profile%\ser\local settings\application data\amigo\application\47.5.2526.111 |
%sysdrive%\windows.old.000\users\виктор\appdata\local\amigo\application\47.5.2526.111 |
%sysdrive%\user-пк\backup set 2016-06-05 190009\backup files 2016-06-05 190009\backup files 2.zip\c\users\user\appdata\local\amigo\application\47.5.2526.111 |
%sysdrive%\user-пк\backup set 2016-03-27 201038\backup files 2016-04-10 190007\backup files 1.zip\c\users\user\appdata\local\amigo\application\47.5.2526.111 |
%sysdrive%\elena-cp\backup set 2016-04-03 190001\backup files 2016-04-19 071550\backup files 1.zip\c\users\home\appdata\local\amigo\application\47.5.2526.111 |
%sysdrive%\pc\backup set 2016-05-18 172314\backup files 2016-05-22 190001\backup files 1.zip\c\users\user2\appdata\local\amigo\application\47.5.2526.111 |
%sysdrive%\adwcleaner\quarantine\files\nvqqjmacsudliotikxeshaxwddziabvh\application\47.5.2526.111 |
%sysdrive%\$recycle.bin\s-1-5-21-421683470-293730743-3545375827-1000\$r264lze\backup set 2016-05-01 193455\backup files 2016-05-01 193455\backup files 3.zip\c\users\ренат\appdata\local\amigo\application\47.5.2526.111 |
|
41.7% |
|
|
20.8% |
|
|
20.8% |
|
|
8.3% |
|
|
4.2% |
|
|
4.2% |
|
Windows 7 |
45.8% |
|
Windows 10 |
33.3% |
|
Windows XP |
12.5% |
|
Windows Vista |
4.2% |
|
Windows 8 |
4.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0007a623 |
Name |
Size of data |
MD5 |
.text |
616448 |
bc9b87fbd66164f4d043190f7666dac3 |
.rdata |
132096 |
6bfd9488d58695fc73eeccce46013311 |
.data |
7168 |
af6b8169ef7cf725d5516fc945bb3a36 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
198144 |
61649a00da7e180ea50965a43cfa02fc |
.reloc |
22016 |
968d7a4622618c97177ac46212351754 |