How to remove Au_.exe
Au_.exe
The module Au_.exe has been detected as Hack.Gen
File Details
| Product Name: | TNod User @amp; Password Finder |
| Company Name: | Tukero[X]Team |
| MD5: | 3d64090784129752e391e27438b7c283 |
| Size: | 69 KB |
| First Published: | 2018-08-11 11:13:24 (7 years ago) |
| Latest Published: | 2021-07-06 20:06:26 (4 years ago) |
| Status: | Hack.Gen (on last analysis) | |
| Analysis Date: | 2021-07-06 20:06:26 (4 years ago) |
Common Places:
| %programfiles%\eset |
| %programfiles% |
| %temp% |
| %sysdrive% |
| %sysdrive%\temp |
| %sysdrive%\1_poju\divers\tnod_rescue.rar\tnod_rescue |
| %sysdrive%\programy |
| %profile%\tnod |
| %programfiles% |
| %programfiles% |
File Names:
| uninst-tnod.exe |
| Au_.exe |
| Bu_.exe |
| uninst-tnod.exe.quarantined |
| nsi5ADC.exe |
Geography:
| 28.3% | ||
| 12.9% | ||
| 5.4% | ||
| 3.9% | ||
| 3.4% | ||
| 3.2% | ||
| 2.7% | ||
| 2.4% | ||
| 2.0% | ||
| 2.0% | ||
| 1.7% | ||
| 1.7% | ||
| 1.7% | ||
| 1.5% | ||
| 1.5% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 1.2% | ||
| 1.0% | ||
| 1.0% | ||
| 1.0% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.7% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.5% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% | ||
| 0.2% |
OS Version:
| Windows 10 | 61.2% | |
| Windows 7 | 30.2% | |
| Windows 8.1 | 5.9% | |
| Windows XP | 1.5% | |
| Windows Embedded Standard | 1.0% | |
| Windows 8 | 0.2% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0000323c |
PE Sections:
| Name | Size of data | MD5 |
| .text | 23552 | 0bc2ffd32265a08d72b795b18265828d |
| .rdata | 4608 | f179218a059068529bdb4637ef5fa28e |
| .data | 1024 | 975304d6dd6c4a4f076b15511e2bbbc0 |
| .ndata | 0 | 00000000000000000000000000000000 |
| .rsrc | 23040 | 166e2e6743d05cb71a6572e1d171af1b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Au_.exe