How to remove Unconfirmed 685057.crdownload

Unconfirmed 685057.crdownload

The module Unconfirmed 685057.crdownload has been detected as Trojan.Agent

Unconfirmed 685057.crdownload
Product Name:

UC Browser

Company Name:

UCWeb Inc.

MD5: 41f04143113a759524bd13993afa4b8e
Size: 1 MB
First Published: 2018-01-11 10:07:54 (6 years ago)
Latest Published: 2024-11-19 23:06:38 (a day ago)
Status: Trojan.Agent (on last analysis)
Analysis Date: 2024-11-19 23:06:38 (a day ago)
Signed By: TAOBAO (CHINA) SOFTWARE CO.,LTD.
Status: Valid
%profile%
%sysdrive%\download programs-for windows setup
%profile%\downloads
%sysdrive%\downloads
%sysdrive%
%desktop%
%localappdata%\microsoft\windows\temporary internet files\content.ie5
%sysdrive%\$recycle.bin
%localappdata%\microsoft\windows\inetcache\low\ie
%profile%\dministrateur\mes documents
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215).exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)_2.exe
UCBrowser.exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)[1].exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)a.exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215) (1).exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215) (2).exe
$RGIENVP.exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215)[2].exe
UCBrowser_V7.0.185.1002_4601_(Build1801021540)_(en-us)_online_installer[1].exe
UCBrowser_V7.0.185.1002_4601_(Build1801021540)_(en-us)_online_installer.exe
A0477825.exe
UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215) (3).exe
UCBrowser_Rus_Setup.exe
$R2QSWNJ.exe
Navegador UCBrowser_V7.0.185.1002_windows_pf101_(Build18010215).exe
$RW6QCJE.exe
UC Browser Hattec.exe
Unconfirmed 685057.crdownload
17.1%
8.7%
6.7%
6.1%
5.8%
5.2%
5.2%
4.1%
3.2%
2.9%
2.9%
2.0%
2.0%
1.7%
1.4%
1.4%
1.4%
1.4%
1.2%
1.2%
1.2%
1.2%
0.9%
0.9%
0.9%
0.9%
0.9%
0.9%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
Windows 10 61.1%
Windows 7 29.6%
Windows 8.1 6.5%
Windows XP 1.7%
Windows 8 0.6%
Windows Vista 0.3%
Windows Server 2012 R2 0.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00092dd7

PE Sections:

Name Size of data MD5
.text 757760 4146d4f3393275bac506310089c02828
.rdata 143360 13e1bc9c9dc01ea939d0201adc56fb27
.data 5632 8ad7249d8b767408ef56f1696209f8e9
.gfids 1024 1a6b26a184eb9a52b5d943a38112d90c
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 751104 1f32565b41dc516871c3c701e5639107
.reloc 28160 451116e9f5330ffa62b486ff94081e12

More information:

Download GridinSoft Anti-Malware - Removal tool for Unconfirmed 685057.crdownload