How to remove R2_NSISInstall.exe

R2_NSISInstall.exe

The module R2_NSISInstall.exe has been detected as PUP.BaiduPCFaster

R2_NSISInstall.exe
Product Name:

Baidu PC Faster

Company Name:

Baidu, Inc.

MD5: c3b84a2e5e5c319a9f17a4f816da38bc
Size: 1 MB
First Published: 2017-05-21 09:02:27 (7 years ago)
Latest Published: 2024-11-06 23:01:42 (2 weeks ago)
Status: PUP.BaiduPCFaster (on last analysis)
Analysis Date: 2024-11-06 23:01:42 (2 weeks ago)
%programfiles%\pc faster\5.1.0.0
%programfiles%\pc faster
%programfiles%\pc faster\update
%sysdrive%\adwcleaner\quarantine\files\yvuopjekvumfqjdeeunvxxcbtddhiccw\5.1.0.0
%sysdrive%\adwcleaner\quarantine\files\guqwqsotgqmwbksiznnxxifxoikfobec\5.1.0.0
%profile%\desktop
%temp%\nsl6fb5.tmp
%temp%\nsw98d2.tmp
%sysdrive%\adwcleaner\quarantine\files\efftrnttndhgatxztpaqxdyyeuqynaln\5.1.0.0
%sysdrive%\adwcleaner\quarantine\gxix4a2dre\5.1.0.0
NSISInstall.exe
R2_NSISInstall.exe
A0051780.exe
9CCFEE9CDFE458A3.vir
A0126370.exe
A0129357.exe
A0128330.exe
A0130357.exe
A0135286.exe
A0136305.exe
A0138303.exe
18.6%
12.6%
9.1%
6.6%
5.2%
5.1%
2.7%
2.7%
2.6%
2.5%
2.4%
2.0%
1.8%
1.8%
1.8%
1.4%
1.1%
1.0%
1.0%
0.9%
0.9%
0.8%
0.7%
0.7%
0.7%
0.7%
0.6%
0.6%
0.6%
0.6%
0.5%
0.5%
0.5%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.3%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
Windows 7 55.1%
Windows 10 31.5%
Windows 8.1 7.3%
Windows XP 2.5%
Windows 8 2.3%
Windows Vista 0.9%
Windows Embedded 8.1 0.5%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00082d22

PE Sections:

Name Size of data MD5
.text 1137664 630d29600fb90fad601f0e141b4320a2
.rdata 274944 ea76eea4d63cbc1f6d10c3731e2a7cef
.data 20480 88b5e2610f1439c80c34cba43ce7d156
.rsrc 80896 f9696226a4b4e1833267354fa162ee76
.reloc 52736 9448d9bdf8de3103a7b0384999f10fce

More information:

Download GridinSoft Anti-Malware - Removal tool for R2_NSISInstall.exe