How to remove $R6J5J89.exe

$R6J5J89.exe Removal: How to Get Rid of $R6J5J89.exe9e279fe5d9b87b2cebe9e3b281acc657

$R6J5J89.exe

The module $R6J5J89.exe has been detected as PUP.UCBrowser

$R6J5J89.exe
Product Name:

UC浏览器

Company Name:

UCWeb Inc.

MD5: 9e279fe5d9b87b2cebe9e3b281acc657
Size: 48 MB
First Published: 2017-05-21 03:02:06 (2 years ago)
Latest Published: 2018-11-06 13:08:48 (5 months ago)
Status: PUP.UCBrowser (on last analysis)
Analysis Date: 2018-11-06 13:08:48 (5 months ago)
Signed By: TAOBAO (CHINA) SOFTWARE CO.,LTD.
Status: Valid
%appdata%\ucchannel\package
%sysdrive%\adwcleaner\quarantine\files\ystflsnjocnvhgrkzufwsqomzdbujthd\package
%sysdrive%\adwcleaner\quarantine\files\zgtbpajlkuwzstaivbwlmhcsaubcgkty\package
%appdata%\zhp\quarantine\ucchannel\package
%sysdrive%\system volume information\systemrestore\frstaging\users\carlo\appdata\roaming\ucchannel\package
%sysdrive%\adwcleaner\quarantine\files\zdbxdcplaftrmvesqozgnorofetrmxnh\package
%profile%\dministrator\application data\ucchannel\package
%sysdrive%\adwcleaner\quarantine\files\wywhnyskylbaygqtagupgbsywbsahjor\package
%sysdrive%\adwcleaner\quarantine\files\sueaqizfmomsmopckvbtiwyoworqdkxl\package
%sysdrive%\adwcleaner\quarantine\files\vxmffozpzvzxbvunfybcyxtnqbngclvb\package
UCBrowserSetup.exe
$R6J5J89.exe
23.2%
19.5%
8.7%
8.2%
5.8%
3.6%
3.5%
2.3%
1.8%
1.6%
1.4%
1.2%
1.0%
0.9%
0.9%
0.8%
0.7%
0.7%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
Windows 7 52.2%
Windows 10 39.0%
Windows 8.1 6.7%
Windows 8 1.4%
Windows XP 0.3%
Windows Vista 0.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000a9912

PE Sections:

Name Size of data MD5
.text 855552 d4c3330028973d2b74d547a775dccf06
.data 5120 3daa5b25c645f3b036329b2f4c1c13d6
.idata 11776 355ab5174a149cff0dae05cc2a45e53b
.gfids 1024 4caea6604ffce3d8d3e62d5bfadb0f8c
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 50210816 a72c5a990429175cd8ef0d3eeec1a83c
.reloc 28672 88f49331c30919ad5ee7d2ed23ea843b

More information:

Download GridinSoft Anti-Malware - Removal tool for $R6J5J89.exe