How to remove pugongying.exe
- File Details
- Overview
- Analysis
pugongying.exe
The module pugongying.exe has been detected as General Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
0dfc7292aa2389836ad678c17836beef |
Size: |
2 MB |
First Published: |
2017-05-29 03:04:06 (7 years ago) |
Latest Published: |
2021-01-11 12:50:54 (3 years ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2021-01-11 12:50:54 (3 years ago) |
Overview
%profile%\dministrator\application data |
%appdata% |
%temp% |
%appdata% |
%appdata% |
DandelionSetup.exe |
pugongying.exe |
|
41.5% |
|
|
26.8% |
|
|
7.3% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
2.4% |
|
|
2.4% |
|
Windows 7 |
63.4% |
|
Windows 10 |
22.0% |
|
Windows XP |
7.3% |
|
Windows 8.1 |
7.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000038af |
Name |
Size of data |
MD5 |
.text |
29696 |
419d4e1be1ac35a5db9c47f553b27cea |
.rdata |
11264 |
cca1ca3fbf99570f6de9b43ce767f368 |
.data |
512 |
77f0839f8ebea31040e462523e1c770e |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
29184 |
5a8c99e6c90a03ba22c21b6768699e09 |
.reloc |
4096 |
e5d8ef057a9b8f5d067854c1927ec25e |