How to remove Au_.exe
Au_.exe
The module Au_.exe has been detected as Hack.Gen
File Details
Product Name: | TNod User @amp; Password Finder |
Company Name: | Tukero[X]Team |
MD5: | c3b062d55e77a69e17cf5d36952985d9 |
Size: | 69 KB |
First Published: | 2017-06-10 16:06:39 (7 years ago) |
Latest Published: | 2020-12-30 03:18:43 (3 years ago) |
Status: | Hack.Gen (on last analysis) | |
Analysis Date: | 2020-12-30 03:18:43 (3 years ago) |
Common Places:
%programfiles%\tnod |
%temp%\~nsu.tmp |
%programfiles% |
%profile%\eza\local settings\temp |
%sysdrive%\system volume information\_restore{8869d70c-95f8-4ab1-9f56-9c92c3995267} |
%temp% |
%programfiles% |
%sysdrive%\tnod 1.6 beta |
%programfiles% |
File Names:
uninst-tnod.exe |
Au_.exe |
A0002196.exe |
Geography:
18.2% | ||
15.2% | ||
12.1% | ||
7.6% | ||
6.1% | ||
6.1% | ||
4.5% | ||
4.5% | ||
3.0% | ||
3.0% | ||
3.0% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% | ||
1.5% |
OS Version:
Windows 7 | 59.1% | |
Windows 10 | 25.8% | |
Windows 8.1 | 10.6% | |
Windows XP | 4.5% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000323c |
PE Sections:
Name | Size of data | MD5 |
.text | 23552 | 0bc2ffd32265a08d72b795b18265828d |
.rdata | 4608 | f179218a059068529bdb4637ef5fa28e |
.data | 1024 | 975304d6dd6c4a4f076b15511e2bbbc0 |
.ndata | 0 | 00000000000000000000000000000000 |
.rsrc | 23040 | eec061804b30798e4ee98cd78497cdff |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Au_.exe