How to remove 6.vir
6.vir
The module 6.vir has been detected as PUP.MailRu
File Details
Product Name: | gamecenter component gclay.dll |
Company Name: | LLC Mail.Ru |
MD5: | 496641f6cf7607ff38924f7d6342739e |
Size: | 286 KB |
First Published: | 2018-09-12 06:13:49 (5 years ago) |
Latest Published: | 2019-04-27 12:27:59 (5 years ago) |
Status: | PUP.MailRu (on last analysis) | |
Analysis Date: | 2019-04-27 12:27:59 (5 years ago) |
Overview
Signed By: | LLC Mail.Ru |
Status: | Valid |
Common Places:
%sysdrive%\adwcleaner\quarantine\c\users\freeuser\appdata\local\mail.ru\gamecenter |
%profile%\дминистратор\local settings\application data\mail.ru |
%localappdata%\mail.ru |
%profile%\dmin\local settings\application data\mail.ru |
File Names:
5.vir |
6.vir |
gclay.dll |
Geography:
80.0% | ||
20.0% |
OS Version:
Windows 7 | 40.0% | |
Windows 10 | 40.0% | |
Windows 8.1 | 20.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0003cef0 |
PE Sections:
Name | Size of data | MD5 |
.text | 238080 | 9b1566bd646991949df8c80f07f3ffd2 |
.itext | 4096 | 15bdf199938becdde7129114c3527cd8 |
.data | 11264 | e965a614e2f143e3bcbb66bcff08394a |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 4608 | 2e3566153d8817b8d8a4579f14aaadb2 |
.didata | 512 | 9b928105a02541aeb74bff2efd76881f |
.edata | 512 | ca154ef76ffdf638b258c69fc30f2aa5 |
.reloc | 19968 | 5c8d98378d60e191453da160d110ea73 |
.rsrc | 7168 | 884a7a4a9167701651be3917ec142efd |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 6.vir