How to remove icqsetup.exe
- File Details
- Overview
- Analysis
icqsetup.exe
The module icqsetup.exe has been detected as PUP.MailRu
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
ba692d1ba2d1517c45f2f51a167ad4aa |
| Size: |
34 MB |
| First Published: |
2018-05-22 19:01:36 (7 years ago) |
| Latest Published: |
2023-01-12 23:04:30 (2 years ago) |
| Status: |
PUP.MailRu (on last analysis) |
|
| Analysis Date: |
2023-01-12 23:04:30 (2 years ago) |
Overview
| Signed By: |
LLC Mail.Ru |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
| %temp% |
| %appdata%\icq |
| %appdata%\icq\updates |
| %sysdrive%\temp |
| %sysdrive%\$recycle.bin |
| %sysdrive%\windows.old\users\rkk\appdata\local\temp |
| %sysdrive%\system volume information\_restore{9322ff0b-b4e0-41bd-a0e6-331cd7f07536} |
| %profile%\dmin\application data\icq |
| %profile%\dministrator\application data\icq |
| %profile%\dministrator\application data\icq\updates |
| icq201D.tmp |
| icqsetup.exe |
| icq243.tmp |
| icq_rfrset_49818945.exe |
| ICQ 10.0 build 12341 Final.exe |
| icq_10-0-12341_fr_35432.exe |
| icq_rfrset_f1754b0f.exe |
| $RPV509X.exe |
| icqD993.tmp |
| icq_rfrset.exe |
| icq_rfrset_55e3ffed.exe |
| icq_rfrset_46e87ed6.exe |
| icq_rfrset_7779d34f.exe |
| icq_rfrset_811ecb4b.exe |
| icq_rfrset_1849cd63.exe |
| icq_rfrset_19fc6c61.exe |
| A0208420.exe |
| A0210175.exe |
| icq_rfrset_06f532fa.exe |
| icqF3AF.tmp |
| icq_rfrset_68147e60.exe |
| icq_rfrset_e8874fd5.exe |
| icq_rfrset_0743eed5.exe |
| icq_rfrset_49994843 (1).exe |
| icq_rfrset_b5deb3b3.exe |
| icq_rfrset_26af8f6b.exe |
| icq_rfrset_ed0ae973.exe |
| icq_rfrset_c88862b4.exe |
| icq_rfrset_95590cf6.exe |
| icq_rfrset_e6c37f08.exe |
| icq_rfrset_2003f1ee.exe |
| icq48B6.tmp |
| icq_rfrset_fa91606f.exe |
| icq_rfrset_33dab138.exe |
| icq_rfrset_9cb79afc.exe |
| icq_rfrset_2adedf8f.exe |
| icq_rfrset_eb38a453.exe |
| icq_rfrset_09c699ac.exe |
| icq1F81.tmp |
| icq4153.tmp |
| icq90F8.tmp |
| icq466E.tmp |
| icqC032.tmp |
| icq8FA0.tmp |
| icq9E3A.tmp |
| icq1129.tmp |
| icqE9F0.tmp |
| icq34B2.tmp |
| icq_rfrset_95f81537.exe |
|
59.5% |
|
|
6.6% |
|
|
6.0% |
|
|
3.0% |
|
|
2.7% |
|
|
2.0% |
|
|
2.0% |
|
|
1.7% |
|
|
1.7% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.0% |
|
|
1.0% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
| Windows 10 |
44.6% |
|
| Windows 7 |
40.3% |
|
| Windows 8.1 |
11.8% |
|
| Windows XP |
2.6% |
|
| Windows Embedded Standard |
0.3% |
|
| Windows Server 2008 R2 |
0.3% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x008fc376 |
| Name |
Size of data |
MD5 |
| .text |
11313664 |
8bf96a2fda7715896e69323914b8f4e3 |
| .rdata |
4340224 |
7856f6f824f0448551ee005fbf2c90e1 |
| .data |
124416 |
47adf2114266f06ffd518218a9adf48d |
| .qtmetad |
1024 |
8d5fd79c6cd3d37567733eaf95522bc1 |
| _RDATA |
512 |
8c48bc5fdfe8016ff88837fdfdf83d8d |
| .rsrc |
19961344 |
5961add91ea5204347d9d3c3ecce7669 |
| .reloc |
372736 |
8498033280fcf8efe25c480f1285b4dc |