How to remove kernelUpdate.exe.o
- File Details
- Overview
- Analysis
kernelUpdate.exe.o
The module kernelUpdate.exe.o has been detected as PUP.Baidu
File Details
Company Name: |
|
MD5: |
d18c6ec3c1e4f9929d03f120d67ea85c |
Size: |
2 MB |
First Published: |
2017-05-21 07:09:31 (6 years ago) |
Latest Published: |
2018-11-28 18:08:19 (5 years ago) |
Status: |
PUP.Baidu (on last analysis) |
|
Analysis Date: |
2018-11-28 18:08:19 (5 years ago) |
Overview
%appdata%\baidu\baiduyunguanjia |
%appdata%\baidu\baidunetdisk |
%profile%\downloads\baidunetdisk_portable\baidunetdisk_portable\baidunetdisk |
%sysdrive%\windows.old\users\jojo\appdata\roaming\baidu\baidunetdisk |
%profile%\downloads\baidunetdisk_portable.7z (1)\baidunetdisk |
%profile%\downloads\baiduyunguanjiasvippj_jb51\baiduyunguanjiasvippj\baiduyunguanjia |
%appdata%\baidu\baidu netdisk |
%sysdrive%\adwcleaner\quarantine\c\users\lmstudio\appdata\roaming\baidu\baiduyunguanjia |
%sysdrive%\windows.old\users\陳永平\appdata\roaming\baidu\baidunetdisk |
%sysdrive%\$recycle.bin\s-1-5-21-2919837739-2587390054-3968611417-1001\$r3xubo9\baiduyunguanjia |
kernelUpdate.exe |
kernelUpdate.exe.o |
kernelUpdate.exe.vir |
|
40.0% |
|
|
35.5% |
|
|
6.5% |
|
|
5.5% |
|
|
3.0% |
|
|
2.5% |
|
|
2.0% |
|
|
1.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
Windows 10 |
56.5% |
|
Windows 7 |
39.0% |
|
Windows 8.1 |
3.5% |
|
Windows 8 |
1.0% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x001e0ba3 |
Name |
Size of data |
MD5 |
.text |
2194944 |
21dc4b364c60b3fe423a9fddbb849ebd |
.rdata |
495104 |
b2ec5a24bf36d757f19471fbf8da7c63 |
.data |
87552 |
0465fa44273fc7b9a17d2848c3b3a9ab |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
1536 |
903107de53b9b60633ca9025185725e9 |
.reloc |
98816 |
f817435efae4b235ba37a55a5d60f2fc |