How to remove YunSub.dll.quarantined
- File Details
- Overview
- Analysis
YunSub.dll.quarantined
The module YunSub.dll.quarantined has been detected as PUP.Baidu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
652dbf64f2cd8c260583f5563193a1a4 |
Size: |
628 KB |
First Published: |
2017-06-22 13:01:15 (7 years ago) |
Latest Published: |
2018-10-05 06:13:54 (6 years ago) |
Status: |
PUP.Baidu (on last analysis) |
|
Analysis Date: |
2018-10-05 06:13:54 (6 years ago) |
Overview
%appdata%\baidu\baidunetdisk |
%appdata%\baidu\baiduyunguanjia |
%sysdrive%\system volume information\_restore{3b6b1e0b-5ca5-4f84-a6b9-9fde73475d3f}\rp34 |
%sysdrive%\windows.old\users\陳永平\appdata\roaming\baidu\baidunetdisk |
%appdata%\baidu |
%sysdrive% |
%sysdrive%\baidu\百度网盘绿色版 v5.6.1 |
%programfiles% |
YunSub.dll |
YunSub.dll.quarantined |
yunsub.dll |
A0040829.dll |
|
46.2% |
|
|
23.1% |
|
|
14.6% |
|
|
3.8% |
|
|
3.8% |
|
|
2.3% |
|
|
1.5% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 10 |
66.2% |
|
Windows 7 |
30.0% |
|
Windows 8.1 |
2.3% |
|
Windows XP |
1.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00025671 |
Name |
Size of data |
MD5 |
.text |
397824 |
e65718df8e078424b5e2807a267b2ead |
.rdata |
98304 |
d744ad68c09e797ce0111fc6b025d31f |
.data |
21504 |
aa616453cda1eadf963b11b067705b3a |
.rsrc |
83968 |
bebd652311a42b9291fbad5c06f396cd |
.reloc |
34304 |
05b1226dd0ada6ecfd69d03262dba499 |