How to remove A0145217.exe
- File Details
- Overview
- Analysis
A0145217.exe
The module A0145217.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b12159f174a94a098d8305c7c62045a4 |
Size: |
928 KB |
First Published: |
2018-01-12 01:07:43 (6 years ago) |
Latest Published: |
2019-05-10 10:53:32 (5 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2019-05-10 10:53:32 (5 years ago) |
Overview
%localappdata%\amigo\application\42.0.2311.254 |
%profile%\едра\local settings\application data\amigo\application\42.0.2311.254 |
%sysdrive%\user-пк\backup set 2016-08-14 232622\backup files 2016-08-14 232622\backup files 3.zip\c\users\user\appdata\local\amigo\application\42.0.2311.254 |
%sysdrive%\user-пк\backup set 2015-09-10 141444\backup files 2015-09-13 203930\backup files 1.zip\c\users\user\appdata\local\amigo\application\42.0.2311.254 |
%sysdrive%\user-пк\backup set 2015-10-04 190009\backup files 2015-10-04 190009\backup files 2.zip\c\users\user\appdata\local\amigo\application\42.0.2311.254 |
%sysdrive%\system volume information\_restore{1715feeb-1026-486b-bb59-f2e59775fa3c} |
%sysdrive%\admin\backup set 2015-10-28 172437\backup files 2015-10-28 172437\backup files 1.zip\c\users\hom\appdata\local\amigo\application\42.0.2311.254 |
%sysdrive%\admin\backup set 2015-10-28 175833\backup files 2015-10-28 175833\backup files 1.zip\c\users\hom\appdata\local\amigo\application\42.0.2311.254 |
%sysdrive%\windows.old\users\danil\appdata\local\amigo\application\42.0.2311.254 |
%sysdrive%\новая папка (5)\!!!c_old3\users\admin\appdata\local\amigo\application\42.0.2311.254 |
|
46.7% |
|
|
20.0% |
|
|
13.3% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
Windows 10 |
46.7% |
|
Windows 7 |
46.7% |
|
Windows 8 |
6.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000732e0 |
Name |
Size of data |
MD5 |
.text |
587776 |
f57637072ecc6a34e8feda555b7195ef |
.rdata |
128000 |
ce539e6c0f0de259d78c6df1e2d01187 |
.data |
7168 |
3d7ea23b228fc1f1d3c0879eb03e16e5 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
198144 |
30f7e7e5ba80a9dc76a98202c25ed203 |
.reloc |
21504 |
534b6c6c632cd9c77f1032c40a81aad9 |