How to remove eventer.exe
- File Details
- Overview
- Analysis
eventer.exe
The module eventer.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
92495861b35fab2bc93012e8014145de |
Size: |
17 MB |
First Published: |
2020-12-26 08:08:38 (4 years ago) |
Latest Published: |
2021-01-13 16:15:03 (4 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2021-01-13 16:15:03 (4 years ago) |
Overview
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
%localappdata%\mail.ru\atom |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00d8f580 |
Name |
Size of data |
MD5 |
.text |
14438400 |
7b7ae171aab2abde327120dcdc51712f |
.rdata |
3001856 |
2fe23fd87b9b6e9f15241b19c44a2631 |
.data |
60928 |
96fc6e5daa2497168b29ea6222cdf427 |
.00cfg |
512 |
2a958f58b125a3d635b231e7a5071d80 |
.rodata |
2560 |
7529258c4cd2573d353a091fb4b18a25 |
.tls |
512 |
62eaca200eb0b642942495bbd5cd5705 |
.voltbl |
512 |
11ce5b4760d9f0d3d90adb1cfa478243 |
CPADinfo |
512 |
842689af09e7bf563672a4b43f1a2286 |
.rsrc |
60928 |
338483b70645d27366ee0a8cd3c4c924 |
.reloc |
391168 |
eb5c5ba641703124a4d2e6a575509424 |