How to remove WebServe.exe
- File Details
- Overview
- Analysis
WebServe.exe
The module WebServe.exe has been detected as PUP.Youku
File Details
Product Name: |
|
Company Name: |
|
MD5: |
af91b065071e53b4f164ec441f220f09 |
Size: |
361 KB |
First Published: |
2017-05-21 21:05:23 (7 years ago) |
Latest Published: |
2018-09-06 02:16:15 (6 years ago) |
Status: |
PUP.Youku (on last analysis) |
|
Analysis Date: |
2018-09-06 02:16:15 (6 years ago) |
Overview
%programfiles%\youku\youkuclient |
%appdata%\yk_temp |
%appdata%\youku\upgrade\7.3.0.9261 |
%appdata%\youku\upgrade\7.2.9.10010 |
%sysdrive%\应用程序\youku\youkuclient |
%appdata% |
%programfiles%\youku |
%profile%\downloads\7.2.8.9010 |
%programfiles% |
%sysdrive%\adwcleaner\quarantine\files\ptumxpowkjfbtngxiyhupumhkqaijxkh |
|
32.5% |
|
|
22.5% |
|
|
12.5% |
|
|
10.0% |
|
|
3.3% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 10 |
46.3% |
|
Windows 7 |
43.8% |
|
Windows 8 |
5.8% |
|
Windows 8.1 |
4.1% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00034090 |
Name |
Size of data |
MD5 |
.text |
246784 |
3907e91a782077f487c462beaa73c829 |
.rdata |
67072 |
9167ded33d82e3dda1926624ef6b5c62 |
.data |
10240 |
eb13106a783d0da920668873b572cdfa |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
1536 |
2de12ff795076ed13d5cec954c5549e4 |
.reloc |
34304 |
75c5dd81d4f699d52832829909b560ee |