How to remove A0163974.exe
- File Details
- Overview
- Analysis
A0163974.exe
The module A0163974.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f9512fecd853cfb9971c71c425917d04 |
Size: |
6 MB |
First Published: |
2017-05-22 07:06:14 (7 years ago) |
Latest Published: |
2019-04-08 09:10:26 (5 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2019-04-08 09:10:26 (5 years ago) |
Overview
%temp%\amigo_ffa3c3e0-b3b6-4d8c-928c-75aa59a806a0 |
%sysdrive%\docume~1\9251~1\locals~1\temp |
%sysdrive%\system volume information\_restore{34dde9da-c526-43cf-b32a-ef97eff59838} |
%profile%\горь\local settings\application data\lite\temp\source3332_9729 |
%windir%\temp |
%profile%\dmin\local settings\temp |
%temp% |
%sysdrive%\docume~1\admin\locals~1\temp |
%localappdata% |
%sysdrive%\сергей-пк\backup set 2015-01-24 194648\backup files 2015-02-22 190002\backup files 1.zip\c\users\сергей\appdata\local |
MailRuUpdater.exe |
A0163974.exe |
mailruupdater.exe |
180613122000078-000766.file |
A0005909.old |
|
34.3% |
|
|
34.3% |
|
|
22.9% |
|
|
5.7% |
|
|
2.9% |
|
Windows 7 |
40.0% |
|
Windows XP |
37.1% |
|
Windows 8.1 |
14.3% |
|
Windows 10 |
5.7% |
|
Windows 8 |
2.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0015d4fd |
Name |
Size of data |
MD5 |
.text |
2219520 |
9ec8442692141adb5d4b15c4b0af210e |
.rdata |
431616 |
a7c188bcd8ad3202a93886cae411fd5f |
.data |
41984 |
6914b9d7cbf14bca2fd87ec9c62f7c53 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
4163072 |
0c8c46c931f47ca2b04ea475692cf7fa |
.reloc |
109568 |
faf8ee6078eb1e1ffb245d83e54484d7 |