How to remove 0019-1af7-3813-d867.exe
- File Details
- Overview
- Analysis
0019-1af7-3813-d867.exe
The module 0019-1af7-3813-d867.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2b10187e4a4787d65816379f1e4de40f |
Size: |
2 MB |
First Published: |
2017-07-09 17:11:27 (7 years ago) |
Latest Published: |
2020-10-06 06:44:27 (4 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2020-10-06 06:44:27 (4 years ago) |
Overview
%programfiles%\mail.ru\update service |
%localappdata%\temp |
%localappdata%\mail.ru\update service |
%programfiles%\mail.ru |
%localappdata%\mail.ru |
%sysdrive%\docume~1\e6e4~1\locals~1 |
%sysdrive%\adwcleaner\quarantine\files\mhowbcodjjdxwefzbgjhwvefyulmyywd |
%sysdrive%\adwcleaner\filequarantine\c\program files (x86)\mail.ru |
%localappdata%\mail.ru |
%localappdata%\mail.ru |
mrupdsrv.exe |
0019-1af7-3813-d867.exe |
mrupdsrv(187).exe |
6f20-a3a5-ac00-3633.exe |
mrupdsrv.exe.vir |
|
57.1% |
|
|
14.3% |
|
|
9.5% |
|
|
9.5% |
|
|
4.8% |
|
|
4.8% |
|
Windows 7 |
38.1% |
|
Windows 10 |
38.1% |
|
Windows 8.1 |
14.3% |
|
Windows Vista |
4.8% |
|
Windows XP |
4.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0010a9a9 |
Name |
Size of data |
MD5 |
.text |
1597440 |
f118e932bf4373609ff0ea7811fa5892 |
.rdata |
371200 |
395003796520be078c9548d2a7fe1b04 |
.data |
54784 |
8267cc43c02824bca0d1ab3d6a7dbd18 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
1536 |
7a98e4a6d72ad4e37a3a4d2c0066bd64 |
.reloc |
93696 |
864b3de9b731f6d6f591fa82bc454713 |