How to remove GuardMailRu[1].exe
- File Details
- Overview
- Analysis
GuardMailRu[1].exe
The module GuardMailRu[1].exe has been detected as PUP.MailRu
File Details
| Product Name: |
|
| MD5: |
45c0dc6a98a2445a027a09fc7870e21e |
| Size: |
6 MB |
| First Published: |
2017-06-22 16:09:11 (8 years ago) |
| Latest Published: |
2021-04-14 20:18:13 (4 years ago) |
| Status: |
PUP.MailRu (on last analysis) |
|
| Analysis Date: |
2021-04-14 20:18:13 (4 years ago) |
Overview
| %commonappdata%\guard.mail.ru |
| %localappdata%\temp |
| %system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5 |
| %programfiles%\mail.ru |
| %allusersprofile%\\application data |
| %sysdrive%\docume~1\b935~1\locals~1 |
| %commonappdata% |
| %system%\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5 |
| %windir% |
| %commonappdata% |
| GuardMailRu.exe |
| GuardMailRu[1].exe |
| GuardMailRu[3].exe |
|
40.9% |
|
|
31.8% |
|
|
18.2% |
|
|
4.5% |
|
|
4.5% |
|
| Windows 7 |
72.7% |
|
| Windows 10 |
18.2% |
|
| Windows XP |
9.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x001b95d2 |
| Name |
Size of data |
MD5 |
| .text |
2341888 |
67ced2492ff9de2190c731b58706c1b6 |
| .rdata |
463872 |
c27a9dc54402e3851489731851b06ad2 |
| .data |
47616 |
8d2f9b565bceebda4730891da88a4c56 |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
3968512 |
ae207d8997274eb76272227eeccc7c92 |
| .reloc |
159744 |
7d6ef023299cfb9a295787105ba12cc8 |