How to remove Au_.exe
Au_.exe
The module Au_.exe has been detected as PUP.Gen

File Details
Company Name: | Yahoo! Inc. |
MD5: | fa5c9f6e75da1ec04c81034604d2fcf6 |
Size: | 69 KB |
First Published: | 2017-07-15 09:09:05 (8 years ago) |
Latest Published: | 2024-08-22 23:01:14 (a year ago) |
Status: | PUP.Gen (on last analysis) | |
Analysis Date: | 2024-08-22 23:01:14 (a year ago) |
Overview
Signed By: | Yahoo! Inc. |
Status: | Valid |
Common Places:
%programfiles%\yahoo!\yset\{8dc75fb7-e1cf-a744-bb1e-aecb363bc8a0} |
%programfiles%\yahoo!\yset\{5200fdc7-6a60-854e-b6cf-8b41c2aec7f8} |
%programfiles%\yahoo!\yset\{0e97eb11-579c-a14f-a08e-4646ec8360f8} |
%programfiles%\yahoo!\yset\{6942fe6b-d02a-d54a-ba35-3fe120cefac1} |
%programfiles%\yahoo!\yset\{1965d1dc-5503-8346-88ad-bd39a83132a5} |
%programfiles%\yahoo!\yset\{b000beb7-b724-6c47-8d3b-dfb6e745d859} |
%programfiles%\yahoo!\yset\{4070b1af-360d-f44c-b7e1-c876eeb77090} |
%programfiles%\yahoo!\yset\{93ce11da-bd2a-3b4c-bd79-29253bb49b18} |
%programfiles%\yahoo!\yset\{dc2c4ac7-78dd-694d-9bc8-50c7bb7392a5} |
%programfiles%\yahoo!\yset\{cc4e6183-fb13-0e44-a461-0c1ed9111acb} |
File Names:
unset.exe |
Au_.exe |
Geography:
Taiwan | 21.3% | |
Brazil | 11.5% | |
United States | 11.1% | |
Vietnam | 8.6% | |
Canada | 8.0% | |
Thailand | 5.5% | |
Italy | 4.9% | |
Germany | 4.2% | |
United Kingdom | 2.5% | |
Argentina | 2.5% | |
Indonesia | 2.4% | |
France | 2.1% | |
Hong Kong | 1.8% | |
Spain | 1.8% | |
India | 1.7% | |
Mexico | 1.7% | |
Sweden | 1.3% | |
Peru | 1.1% | |
Philippines | 1.0% | |
Switzerland | 0.8% | |
Colombia | 0.8% | |
Austria | 0.7% | |
Venezuela | 0.5% | |
Singapore | 0.4% | |
Norway | 0.3% | |
Chile | 0.3% | |
Netherlands | 0.3% | |
Finland | 0.2% | |
Denmark | 0.2% | |
Iran | 0.2% | |
Malaysia | 0.2% | |
Turkey | 0.2% | |
undefined | 0.1% | |
Bolivia | 0.1% | |
Ireland | 0.1% | |
Belgium | 0.1% | |
El Salvador | 0.1% |
OS Version:
Windows 10 | 54.8% | |
Windows 7 | 38.4% | |
Windows 8.1 | 4.0% | |
Windows XP | 1.1% | |
Windows Vista | 1.0% | |
Windows 8 | 0.4% | |
Windows Server 2008 R2 | 0.3% | |
Windows Server 2012 R2 | 0.1% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00003883 |
PE Sections:
Name | Size of data | MD5 |
.text | 28160 | 00499a6f70259150109c809d6aa0e6ed |
.rdata | 11264 | 07990aaa54c3bc638bb87a87f3fb13e3 |
.data | 512 | 014871d9a00f0e0c8c2a7cd25606c453 |
.ndata | 0 | 00000000000000000000000000000000 |
.rsrc | 8704 | ba217f3ac8d271bd5b684ae81463988b |
.reloc | 4096 | 0d3d6b8007ba24b950ec405537ee6850 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Au_.exe
