How to remove A0428769.exe
- File Details
- Overview
- Analysis
A0428769.exe
The module A0428769.exe has been detected as PUP.Baidu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a285a107c1ff430948335933e6671caf |
Size: |
1 MB |
First Published: |
2017-05-21 06:06:50 (7 years ago) |
Latest Published: |
2019-05-26 10:11:25 (5 years ago) |
Status: |
PUP.Baidu (on last analysis) |
|
Analysis Date: |
2019-05-26 10:11:25 (5 years ago) |
Overview
%appdata%\baidu\baidunetdisk\autoupdate |
%appdata%\baidu\baiduyunguanjia\autoupdate |
%profile%\downloads\baidunetdisk_portable\baidunetdisk_portable\baidunetdisk\autoupdate |
%sysdrive%\system volume information\_restore{f14a1c2c-a641-43f9-a293-b0cb265a4677}\rp1244 |
%sysdrive%\windows.old\users\jojo\appdata\roaming\baidu\baidunetdisk\autoupdate |
%profile%\downloads\baidunetdisk_portable.7z (1)\baidunetdisk\autoupdate |
%sysdrive%\$recycle.bin\s-1-5-21-2919837739-2587390054-3968611417-1001\$r3xubo9\baiduyunguanjia\autoupdate |
%appdata%\baidu\baidunetdisk\새 폴더\autoupdate |
%sysdrive%\0o my documents o0\my utils\baidunetdisk\autoupdate |
%appdata%\baidu\baidunetdisk |
Autoupdate.exe |
A0428769.exe |
|
42.4% |
|
|
26.8% |
|
|
8.4% |
|
|
6.9% |
|
|
4.3% |
|
|
1.7% |
|
|
1.7% |
|
|
1.4% |
|
|
1.2% |
|
|
0.9% |
|
|
0.9% |
|
|
0.6% |
|
|
0.6% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
49.7% |
|
Windows 7 |
38.5% |
|
Windows 8.1 |
10.3% |
|
Windows 8 |
0.6% |
|
Windows XP |
0.3% |
|
Windows Embedded Standard |
0.3% |
|
Windows Server 2012 R2 |
0.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0008a757 |
Name |
Size of data |
MD5 |
.text |
1277952 |
30941593fa8c28c1f9c6df94fbddb5bb |
.rdata |
521216 |
29be5981e42e0d590da5b124beb9d77a |
.data |
49664 |
2a3e6e3440f856744dadcd0d8bcc3278 |
.rsrc |
82944 |
14cfb07214c36b8e6a93271842ff8474 |
.reloc |
88576 |
905960b6278fc93958098c543dda3f3f |