How to remove mrutmp.exe
mrutmp.exe
The module mrutmp.exe has been detected as PUP.MailRu

File Details
Product Name: | MailRuUpdater |
Company Name: | Mail.Ru |
MD5: | bc033e65d93237b5982abe1c482ddb10 |
Size: | 3 MB |
First Published: | 2017-05-21 18:09:35 (7 years ago) |
Latest Published: | 2018-11-13 14:04:33 (6 years ago) |
Status: | PUP.MailRu (on last analysis) | |
Analysis Date: | 2018-11-13 14:04:33 (6 years ago) |
Overview
Signed By: | LLC Mail.Ru |
Status: | Valid |
Common Places:
%localappdata%\mail.ru |
%sysdrive%\adwcleaner\quarantine\files\ofxdokgsyixfunmsysaxbvgqdygdiytn\mailruupdater |
%sysdrive%\adwcleaner\quarantine\files\yhgpsxxmvnihzwjlyrgzfvucgifpacsu |
%sysdrive%\adwcleaner\quarantine\files\rvanjbrdlcfwyvyfltlhonczacvlulnd |
%sysdrive%\windows.old\users\ыукен\appdata\local\temp |
%localappdata%\temp |
%programfiles%\mail.ru\mailruupdater |
%sysdrive%\adwcleaner\quarantine\files\lfxlojuypxtrpzkyrekmvsteaaowstny |
%sysdrive%\adwcleaner\quarantine\files\slqqovxwaexwjnkgbqpslycdelfwytwo\mailruupdater |
%programfiles%\mail.ru.$quar\mailruupdater.$quar |
File Names:
MailRuUpdater.exe |
mrutmp.exe |
A0323142.exe |
A0339349.exe |
A0337277.exe |
mailruupdater.exe |
updater.exe |
A0000011.exe |
MRUpdater.exe |
A0125146.exe |
A0123037.exe |
Geography:
50.4% | ||
31.6% | ||
6.8% | ||
4.3% | ||
2.6% | ||
1.7% | ||
1.7% | ||
0.9% |
OS Version:
Windows 7 | 58.1% | |
Windows 10 | 19.7% | |
Windows 8.1 | 14.5% | |
Windows XP | 4.3% | |
Windows 8 | 3.4% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0016f60c |
PE Sections:
Name | Size of data | MD5 |
.text | 3265536 | 29ef0a820a825d65111ede0a6781495f |
.rdata | 622080 | a86ecce63e6b3680970b099065f3c4e9 |
.data | 71168 | 56ad99013526af661ad80f74c05838a8 |
.tls | 512 | bf619eac0cdf3f68d496ea9344137e8b |
.rsrc | 59392 | 3c3d359880c823ee139e2c936bcb96cc |
.reloc | 140800 | 517620b2bdb5cc9c4d844adb214b0c93 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for mrutmp.exe
