How to remove A0049262.exe
- File Details
- Overview
- Analysis
A0049262.exe
The module A0049262.exe has been detected as PUP.ByteFence
File Details
Product Name: |
|
Company Name: |
|
MD5: |
bb90edb4747578af79f721c0f6c97577 |
Size: |
142 KB |
First Published: |
2017-08-27 10:05:28 (7 years ago) |
Latest Published: |
2020-10-09 14:17:27 (4 years ago) |
Status: |
PUP.ByteFence (on last analysis) |
|
Analysis Date: |
2020-10-09 14:17:27 (4 years ago) |
Overview
%programfiles%\bytefence |
%sysdrive%\system volume information\_restore{49a1fa71-1748-4e49-b76f-49a9b8385e88}\rp144 |
%sysdrive%\adwcleaner\quarantine\files\jlpxfkdisndniyhixgeqiulbvrfvccyw |
%programfiles% |
%sysdrive%\windows.old.002\program files |
%sysdrive%\adwcleaner\quarantine\files |
%sysdrive%\system volume information\_restore{d30569de-9dda-493c-bf31-72732bf20ff8} |
%sysdrive%\disco d\program files |
%appdata%\zhp\quarantine |
%appdata%\zhp |
ByteFenceService.exe |
A0049262.exe |
A0148217.exe |
|
38.7% |
|
|
11.3% |
|
|
5.4% |
|
|
5.4% |
|
|
3.2% |
|
|
3.2% |
|
|
2.3% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
Windows XP |
32.4% |
|
Windows 7 |
29.7% |
|
Windows 10 |
27.5% |
|
Windows 8.1 |
7.7% |
|
Windows 8 |
2.3% |
|
Windows Vista |
0.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00020dbe |
MVID: |
be171a38-f654-44f5-8a78-e08da3277be8 |
Typelib ID: |
23a6157f-ff4e-41b4-941c-24a828b415dc |
Name |
Size of data |
MD5 |
.text |
126464 |
08c66d6c451e348bce86177d357ab1dd |
.sdata |
1024 |
ca16deca1e6b644970cc56bd0ff80d55 |
.rsrc |
2048 |
fa39a9176badd96db41d06194c29ef2d |
.reloc |
512 |
2de736fed99b5afa547301bb01952a13 |