How to remove delegate_execute.exe

delegate_execute.exe

The module delegate_execute.exe has been detected as PUP.Browser

delegate_execute.exe
Product Name:

Rambler-Browser

Company Name:

The Chromium and Rambler-Browser Authors

MD5: 6e5572e7cbdc8b30e670b998f742bc7f
Size: 1 MB
First Published: 2017-07-06 08:09:56 (7 years ago)
Latest Published: 2019-12-25 07:19:20 (4 years ago)
Status: PUP.Browser (on last analysis)
Analysis Date: 2019-12-25 07:19:20 (4 years ago)
Signed By: Rambler Internet Holdings LLC
Status: Valid
%localappdata%\nichrome\application\30.0.1599.101
%profile%\dmin\local settings\application data\nichrome\application
%profile%\ed\local settings\application data\nichrome\application
%localappdata%\nichrome\application
%profile%\дминистратор\local settings\application data\nichrome\application
%localappdata%\nichrome\application
%localappdata%\nichrome\application
%localappdata%\nichrome\application
62.5%
31.3%
6.3%
Windows 7 50.0%
Windows 10 31.3%
Windows XP 18.8%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0007c4c2

PE Sections:

Name Size of data MD5
.text 724992 bf450e2b85fdaa73cb32dc0f43fbad15
.rdata 715264 cd0fa52c8f4c0b66884892623abe867e
.data 14336 607e6eae71adbad993278b66a3003b95
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 3072 e3db4d167a0f5808c73a702538076f9d
.reloc 97792 6ccdf2b842c0168fdb0e213ce118223b

More information:

Download GridinSoft Anti-Malware - Removal tool for delegate_execute.exe