How to remove R2_NSISInstall.exe

R2_NSISInstall.exe

The module R2_NSISInstall.exe has been detected as PUP.BaiduPCFaster

R2_NSISInstall.exe
Product Name:

Baidu PC Faster

Company Name:

Baidu, Inc.

MD5: c3b84a2e5e5c319a9f17a4f816da38bc
Size: 1 MB
First Published: 2017-05-21 09:02:27 (8 years ago)
Latest Published: 2025-05-14 23:01:19 (4 days ago)
Status: PUP.BaiduPCFaster (on last analysis)
Analysis Date: 2025-05-14 23:01:19 (4 days ago)
%programfiles%\pc faster\5.1.0.0
%programfiles%\pc faster
%programfiles%\pc faster\update
%sysdrive%\adwcleaner\quarantine\files\yvuopjekvumfqjdeeunvxxcbtddhiccw\5.1.0.0
%sysdrive%\adwcleaner\quarantine\files\guqwqsotgqmwbksiznnxxifxoikfobec\5.1.0.0
%profile%\desktop
%temp%\nsl6fb5.tmp
%temp%\nsw98d2.tmp
%sysdrive%\adwcleaner\quarantine\files\efftrnttndhgatxztpaqxdyyeuqynaln\5.1.0.0
%sysdrive%\adwcleaner\quarantine\gxix4a2dre\5.1.0.0
NSISInstall.exe
R2_NSISInstall.exe
A0051780.exe
9CCFEE9CDFE458A3.vir
A0126370.exe
A0129357.exe
A0128330.exe
A0130357.exe
A0135286.exe
A0136305.exe
A0138303.exe
Thailand 18.5%
Egypt 12.5%
Brazil 9.1%
Indonesia 6.6%
United States 5.2%
Algeria 5.1%
Iran 2.7%
Turkey 2.7%
Slovakia 2.6%
Spain 2.5%
Italy 2.4%
Saudi Arabia 2.0%
India 1.8%
Mexico 1.8%
United Kingdom 1.7%
Argentina 1.4%
Chile 1.1%
Poland 1.0%
Hungary 1.0%
Romania 0.9%
France 0.9%
Peru 0.9%
Portugal 0.8%
Iraq 0.7%
Venezuela 0.7%
Kazakhstan 0.7%
Laos 0.6%
Canada 0.6%
Greece 0.6%
Oman 0.6%
Australia 0.5%
Morocco 0.5%
Pakistan 0.5%
United Arab Emirates 0.4%
Norway 0.4%
Sweden 0.4%
Germany 0.4%
Finland 0.4%
Ecuador 0.4%
Sudan 0.4%
Kuwait 0.4%
Ukraine 0.4%
Dominican Republic 0.4%
Bulgaria 0.4%
Qatar 0.4%
Palestine 0.3%
Bangladesh 0.3%
Jordan 0.3%
China 0.3%
Russia 0.3%
Rwanda 0.2%
Tunisia 0.2%
Syria 0.2%
Angola 0.2%
Lebanon 0.2%
Austria 0.2%
Netherlands 0.2%
Belgium 0.1%
South Korea 0.1%
Libya 0.1%
Mozambique 0.1%
New Zealand 0.1%
Japan 0.1%
Namibia 0.1%
Czech Republic 0.1%
Switzerland 0.1%
Malaysia 0.1%
Serbia 0.1%
undefined 0.1%
Lithuania 0.1%
Moldova 0.1%
Slovenia 0.1%
Colombia 0.1%
Trinidad and Tobago 0.1%
Windows 7 55.1%
Windows 10 31.6%
Windows 8.1 7.2%
Windows XP 2.4%
Windows 8 2.3%
Windows Vista 0.9%
Windows Embedded 8.1 0.5%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00082d22

PE Sections:

Name Size of data MD5
.text 1137664 630d29600fb90fad601f0e141b4320a2
.rdata 274944 ea76eea4d63cbc1f6d10c3731e2a7cef
.data 20480 88b5e2610f1439c80c34cba43ce7d156
.rsrc 80896 f9696226a4b4e1833267354fa162ee76
.reloc 52736 9448d9bdf8de3103a7b0384999f10fce

More information:

Download GridinSoft Anti-Malware - Removal tool for R2_NSISInstall.exe
­