How to remove WebServe.exe
- File Details
- Overview
- Analysis
WebServe.exe
The module WebServe.exe has been detected as PUP.Youku
File Details
Product Name: |
|
Company Name: |
|
MD5: |
7dbf929467feb285b52176f3014e6ef2 |
Size: |
1 MB |
First Published: |
2017-10-30 05:05:48 (7 years ago) |
Latest Published: |
2020-08-18 13:10:37 (4 years ago) |
Status: |
PUP.Youku (on last analysis) |
|
Analysis Date: |
2020-08-18 13:10:37 (4 years ago) |
Overview
%appdata%\youku\upgrade\7.3.1.10171 |
%appdata%\youku\upgrade\7.3.2.10262 |
%appdata%\youku\upgrade\7.3.2.11062 |
%appdata%\youku\upgrade\7.3.2.11078 |
%appdata%\youku\upgrade\7.3.2.11032 |
%programfiles%\youku\youkuclient |
%programfiles%\youku |
%appdata%\youku\upgrade |
%sysdrive%\adwcleaner\quarantine\8yfogkjxrr |
%programfiles% |
|
47.6% |
|
|
23.8% |
|
|
11.9% |
|
|
4.8% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
Windows 10 |
62.8% |
|
Windows 7 |
30.2% |
|
Windows 8.1 |
4.7% |
|
Windows 8 |
2.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000abec4 |
Name |
Size of data |
MD5 |
.text |
821248 |
455ebc8670d71c59bce1290e5b050d35 |
.rdata |
270336 |
89776499ac55881fadb1c50cf64cfb62 |
.data |
43520 |
3ca272f0de24ec3e3dab087e298edfbd |
.rsrc |
4608 |
1180a20f759bec35c3aa3a12074ae705 |
.reloc |
45056 |
6cf2e32826d8f5b086bcf7b0223bb38c |