How to remove Au_.exe
Au_.exe
The module Au_.exe has been detected as Hack.Gen
File Details
| Product Name: | TNod User @amp; Password Finder |
| Company Name: | Tukero[X]Team |
| MD5: | 103f0bb131d987f9a2047eb569605ad4 |
| Size: | 69 KB |
| First Published: | 2017-05-24 20:02:20 (8 years ago) |
| Latest Published: | 2022-05-13 23:35:14 (3 years ago) |
| Status: | Hack.Gen (on last analysis) | |
| Analysis Date: | 2022-05-13 23:35:14 (3 years ago) |
Common Places:
| %programfiles%\tnod |
| %programfiles%\tnod user @amp; password finder |
| %temp%\~nsu.tmp |
| %programfiles%\tnod.rar\tnod |
| %programfiles%\eset\tnod |
| %appdata%\avg\rescue\pc tuneup 2011\161229225126033.rsc |
| %profile%\ggy\local settings\temp\~nsu.tmp |
| %programfiles% |
| %temp% |
| %programfiles%\eset |
File Names:
| uninst-tnod.exe |
| Au_.exe |
| Cu_.exe |
| Bu_.exe |
| A0042690.exe |
| 161229225126033-000018.file |
| $RG9Y08O.exe |
| Fu_.exe |
Geography:
| 17.3% | ||
| 12.4% | ||
| 7.6% | ||
| 6.1% | ||
| 5.7% | ||
| 4.9% | ||
| 3.8% | ||
| 3.6% | ||
| 3.4% | ||
| 3.0% | ||
| 3.0% | ||
| 2.7% | ||
| 2.5% | ||
| 2.3% | ||
| 1.5% | ||
| 1.5% | ||
| 1.1% | ||
| 1.1% | ||
| 1.1% | ||
| 1.1% | ||
| 1.1% | ||
| 1.1% | ||
| 1.1% | ||
| 0.8% | ||
| 0.8% | ||
| 0.8% | ||
| 0.8% | ||
| 0.6% | ||
| 0.6% | ||
| 0.6% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.4% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% |
OS Version:
| Windows 7 | 49.8% | |
| Windows 10 | 37.1% | |
| Windows 8.1 | 9.5% | |
| Windows XP | 2.1% | |
| Windows 8 | 1.3% | |
| Windows Embedded 8.1 | 0.2% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000323c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 23552 | 0bc2ffd32265a08d72b795b18265828d |
| .rdata | 4608 | f179218a059068529bdb4637ef5fa28e |
| .data | 1024 | 975304d6dd6c4a4f076b15511e2bbbc0 |
| .ndata | 0 | 00000000000000000000000000000000 |
| .rsrc | 23040 | 35cba107137b1bcdfdbe1f37c4a03350 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Au_.exe