How to remove A0049265.exe
- File Details
- Overview
- Analysis
A0049265.exe
The module A0049265.exe has been detected as PUP.ByteFence
File Details
Product Name: |
|
Company Name: |
|
MD5: |
102ea3af1f1c9c240acef3184032835d |
Size: |
187 KB |
First Published: |
2017-08-27 10:05:25 (7 years ago) |
Latest Published: |
2020-04-09 18:36:27 (4 years ago) |
Status: |
PUP.ByteFence (on last analysis) |
|
Analysis Date: |
2020-04-09 18:36:27 (4 years ago) |
Overview
%programfiles%\bytefence |
%sysdrive%\system volume information\_restore{49a1fa71-1748-4e49-b76f-49a9b8385e88}\rp144 |
%sysdrive%\adwcleaner\quarantine\files\jlpxfkdisndniyhixgeqiulbvrfvccyw |
%programfiles% |
%sysdrive%\windows.old.002\program files |
%sysdrive%\adwcleaner\quarantine\files |
%sysdrive%\system volume information\_restore{d30569de-9dda-493c-bf31-72732bf20ff8} |
%sysdrive%\disco d\program files |
%appdata%\zhp\quarantine |
%sysdrive%\bogamla\system volume information\_restore{db43493d-faf9-4676-9e56-8e55af9c0409} |
ByteFenceScan.exe |
A0049265.exe |
A0148215.exe |
|
39.7% |
|
|
8.9% |
|
|
6.7% |
|
|
3.9% |
|
|
3.9% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
Windows XP |
32.4% |
|
Windows 10 |
30.7% |
|
Windows 7 |
26.3% |
|
Windows 8.1 |
7.3% |
|
Windows 8 |
2.8% |
|
Windows Vista |
0.6% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0002600e |
MVID: |
0f2321fc-000b-4c5c-a28f-94dfb8b5dadf |
Typelib ID: |
c81283f9-0d37-480a-8c19-15bf224210a4 |
Name |
Size of data |
MD5 |
.text |
147968 |
b1ee81d2512f00e67cc0cee89b1f325d |
.sdata |
1024 |
1c1a67b9496cb342aa6f9d008fbe5b9b |
.rsrc |
26624 |
5c0cf67c7e4754b723de0ceffcf82f3d |
.reloc |
512 |
c0314da2f8ddace604e258136cd68b5a |