How to remove mediaget-admin-proxy.exe
- File Details
- Overview
- Analysis
mediaget-admin-proxy.exe
The module mediaget-admin-proxy.exe has been detected as PUP.Downloader
File Details
MD5: |
424c83ae5385ad3b66d036f40d0df9f7 |
Size: |
113 KB |
First Published: |
2017-05-21 12:06:07 (6 years ago) |
Latest Published: |
2023-04-29 23:34:59 (11 months ago) |
Status: |
PUP.Downloader (on last analysis) |
|
Analysis Date: |
2023-04-29 23:34:59 (11 months ago) |
Overview
%sysdrive%\system volume information\_restore{e79fa400-b217-4368-9e9f-04f8081b19f1}\rp374 |
%sysdrive%\adwcleaner\quarantine\files\eysygbryrsfzbmfpqyexutzvrcflhjbb |
%sysdrive%\adwcleaner\quarantine\files\mnnsaudjmnskiyvoheucziplbayijcxd |
%localappdata%\mediaget2 |
%profile%\leg\local settings\application data\mediaget2 |
%sysdrive%\adwcleaner\quarantine\files\posrofoktjrvymqjtldgstkauuxjovgv |
%sysdrive%\adwcleaner\quarantine\files\awhunkrmtfjpxnukdfbzuybpicgnqnkd |
%sysdrive%\adwcleaner\quarantine\files\zkmtopcwcrvwggamtyrubgejzboopdxn |
%temp%\mediaget-update-tmp |
%sysdrive%\windows.old\users\kaan\appdata\local\mediaget2 |
A0130776.exe |
mediaget-admin-proxy.exe |
$RLTLCAP.exe |
A0204378.exe |
A0002690.exe |
A0032532.exe |
MediaGet.exe |
MEDIAGET-ADMIN-PROXY.EXE |
$RRANFHZ.exe |
mediaget-admin-proxy.exe.vir |
|
60.2% |
|
|
15.5% |
|
|
8.0% |
|
|
3.1% |
|
|
2.3% |
|
|
1.9% |
|
|
0.8% |
|
|
0.6% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
57.2% |
|
Windows 7 |
28.9% |
|
Windows 8.1 |
11.0% |
|
Windows 8 |
1.9% |
|
Windows XP |
0.7% |
|
Windows Embedded 8.1 |
0.1% |
|
Windows Vista |
0.1% |
|
Windows Server 2012 R2 |
0.1% |
|
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00004b04 |
Name |
Size of data |
MD5 |
.text |
81920 |
206612a9ab7079ce9303068d66562d05 |
.rdata |
15360 |
355ff17705280c983bf3784f891339a9 |
.data |
5632 |
5277c32481bc05a8f9744236ef9ab08a |
.rsrc |
512 |
9e290909da996ebe79e59ec73a2b2eaa |
.reloc |
7680 |
373d9f9a4b9f2a3cdcd889a42585386f |