How to remove mailruupdater.exe
- File Details
- Overview
- Analysis
mailruupdater.exe
The module mailruupdater.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
c2eea0811027963f2636f9c2307db2ba |
Size: |
1 MB |
First Published: |
2017-07-10 07:05:36 (7 years ago) |
Latest Published: |
2018-12-18 12:08:50 (6 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2018-12-18 12:08:50 (6 years ago) |
Overview
%profile%\\local settings\application data\mailru |
%localappdata%\mail.ru |
%localappdata%\temp |
%sysdrive%\диск иваныча\c\documents and settings\55\local settings\application data |
%sysdrive%\windows.old\documents and settings\1\local settings\application data |
%sysdrive%\work folder\doc skan\glavni sapakim dok. skan\behor\חשבוניות 2014\04.2014\backup files 1.zip\c\users\ivanov\appdata\local |
%sysdrive%\work folder\doc skan\glavni sapakim dok. skan\pantograf\חשבוניות 2014\03.2014\backup files 2014-01-14 210902\backup files 1.zip\c\users\ivanov\appdata\local |
%sysdrive%\hp4545s\backup set 2014-04-06 190000\backup files 2014-04-06 190000\backup files 6.zip\c\users\elena\appdata\local |
%sysdrive%\hp4545s\backup set 2014-03-18 005814\backup files 2014-03-18 005814\backup files 5.zip\c\users\elena\appdata\local |
%sysdrive%\дом-пк\backup set 2014-01-05 194444\backup files 2014-01-05 194444\backup files 6.zip\c\users\дом\appdata\local |
MailRuUpdater.exe |
mailruupdater.exe |
MailRuUpdater.exe.old |
Windows 7 |
59.3% |
|
Windows 10 |
22.2% |
|
Windows XP |
11.1% |
|
Windows 8.1 |
7.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0007bde8 |
Name |
Size of data |
MD5 |
.text |
1384960 |
f37a098f0198109c735d343d5bb6626b |
.rdata |
199168 |
06f4ce3f26b3cb0f06e490c493188af1 |
.data |
34304 |
f749e13393ba1af7fdb02f088fc69c7e |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
27136 |
d6c16ca9821b1833d6dbd188997e2e4a |
.reloc |
78848 |
8cb975bac079840619e77b014572c47d |