Information about Au_.exe

Au_.exe

Product Name:

Pokki

Company Name:

SweetLabs,Inc.

MD5: 8acafec9a62957b64729e39cb81f5004
Size: 1 MB
First Published: 2017-05-26 22:06:57 (6 years ago)
Latest Published: 2020-10-19 23:29:55 (3 years ago)
Status: Undefined (on last analysis)
Analysis Date: 2020-10-19 23:29:55 (3 years ago)
%localappdata%\pokki
%localappdata%
%temp%
%sysdrive%\windows.old\users\fr146_000\appdata\local
%localappdata%
%localappdata%
%temp%
%windir%\serviceprofiles\networkservice\appdata\local
%windir%\serviceprofiles\localservice\appdata\local
%localappdata%
Uninstall.exe
Au_.exe
22.2%
7.9%
7.9%
7.9%
6.3%
4.8%
4.8%
4.8%
4.8%
4.8%
3.2%
3.2%
3.2%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
1.6%
Windows 8.1 58.7%
Windows 10 41.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00003415

PE Sections:

Name Size of data MD5
.text 26624 cb807804553819b70f6e16b8a094d327
.rdata 6656 161b329b4c70ce4fbd9c1143e738896b
.data 512 140876ba314e7bc36379ee5c6db80876
.ndata 0 00000000000000000000000000000000
.rsrc 49152 f07360fb9374d09ef0a89423b7d36c6f

More information: