How to remove A0197641.dll
- File Details
- Overview
- Analysis
A0197641.dll
The module A0197641.dll has been detected as Adware.Funshion
File Details
Product Name: |
|
Company Name: |
|
MD5: |
69cbd95f240aa0fa78f5e9a404afed4d |
Size: |
687 KB |
First Published: |
2017-11-28 14:06:30 (6 years ago) |
Latest Published: |
2018-02-12 17:11:31 (6 years ago) |
Status: |
Adware.Funshion (on last analysis) |
|
Analysis Date: |
2018-02-12 17:11:31 (6 years ago) |
Overview
%appdata%\aaodemm |
%appdata%\aconsider |
%appdata%\afigure |
%appdata%\achurch |
%appdata%\ahoweverd |
%appdata%\asubtle |
%appdata%\aswiftly |
%sysdrive%\system volume information\_restore{ab745cfb-68f6-40e9-b0db-3eb1865a6002} |
ChaDaoCheng.dll |
A0197641.dll |
Windows 10 |
87.5% |
|
Windows XP |
12.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x0004d7c3 |
Name |
Size of data |
MD5 |
.text |
493056 |
d43c0c67d962f4c5b62864096547ac4e |
.rdata |
126464 |
b414bff4c892eb47cb1c59fe7519233d |
.data |
23040 |
cfe0581289262f6224e2bec077e01723 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
1536 |
7c374a3619c6bac531251aab7fb3b18e |
.reloc |
52224 |
5c064052ee2c4b87fff059480006b5a6 |