How to remove A0165020.exe
- File Details
- Overview
- Analysis
A0165020.exe
The module A0165020.exe has been detected as PUP.Systweak
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b0c84cd8934fb86da3ccb2d7d5eabfd4 |
Size: |
266 KB |
First Published: |
2017-08-10 06:02:42 (7 years ago) |
Latest Published: |
2018-04-19 08:10:03 (6 years ago) |
Status: |
PUP.Systweak (on last analysis) |
|
Analysis Date: |
2018-04-19 08:10:03 (6 years ago) |
Overview
Signed By: |
Solvusoft Corporation |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%sysdrive%\system volume information\_restore{422555ca-142a-413b-bea1-7d1d069699b9} |
SolvusoftWMDefragSrv64.exe |
A0165020.exe |
A0164358.exe |
Windows XP |
80.0% |
|
Windows 7 |
20.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x000178dc |
Name |
Size of data |
MD5 |
.text |
167424 |
aa9c510bd0b0d9f8f3ddd82acf9f724c |
.rdata |
58880 |
f8312fb8fb3373f3c775e99f1eccc8e7 |
.data |
11264 |
834595931ecfe1fd1c83c24631241e2f |
.pdata |
11776 |
a49ed5079bf7cf4744532ca5a9494d85 |
.rsrc |
16896 |
addd7006cb80554dcf8b4b51f12b5cf0 |