How to remove YunShellExt64.dll
- File Details
- Overview
- Analysis
YunShellExt64.dll
The module YunShellExt64.dll has been detected as PUP.Baidu
File Details
Product Name: |
|
MD5: |
13482d907e95b2fe0ea6e88540de3c89 |
Size: |
244 KB |
First Published: |
2017-05-25 15:05:57 (6 years ago) |
Latest Published: |
2019-09-28 11:11:26 (4 years ago) |
Status: |
PUP.Baidu (on last analysis) |
|
Analysis Date: |
2019-09-28 11:11:26 (4 years ago) |
Overview
%appdata%\baidu\baiduyunguanjia |
%sysdrive%\$recycle.bin\s-1-5-21-2919837739-2587390054-3968611417-1001\$r3xubo9\baiduyunguanjia\autoupdate\download\mainapp\fullpackage_5410.cab |
%sysdrive%\windows.old\users\user\appdata\roaming\baidu\baiduyunguanjia\autoupdate\download\mainapp\fullpackage_5410.cab |
%appdata%\baidu |
%sysdrive%\windows.old.000\users\administrator\appdata\roaming\baidu |
%sysdrive%\baiduyunguanjia\autoupdate\download\mainapp |
%sysdrive%\免安裝150517\baiduyunguanjia百度管家\app |
%sysdrive%\baido |
%appdata%\baidu |
%appdata%\baidu |
yunshellext64.dll |
YunShellExt64.dll |
|
43.8% |
|
|
43.8% |
|
|
6.3% |
|
|
3.1% |
|
|
3.1% |
|
Windows 7 |
62.5% |
|
Windows 10 |
25.0% |
|
Windows 8.1 |
6.3% |
|
Windows 8 |
6.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x00011248 |
Name |
Size of data |
MD5 |
.text |
150016 |
95c4c6966e85052f42f6c4eb925a6b92 |
.rdata |
63488 |
8dbd9e785b85fa51be53fd2a7e12a424 |
.data |
9728 |
5024d6895ec343bc3476565827b54e14 |
.pdata |
8192 |
99c297f8c7961eeb281d335cdf062068 |
.rsrc |
7168 |
1fbab84fee8ffc13d75ef29875703605 |
.reloc |
2560 |
ba2c2f751816079e7a37452dfb81d714 |