How to remove mweshieldup.exe
- File Details
- Overview
- Analysis
mweshieldup.exe
The module mweshieldup.exe has been detected as Adware.NetFilter
File Details
Product Name: |
|
Company Name: |
|
MD5: |
bff930763738bd0b239189e3dba86bff |
Size: |
340 KB |
First Published: |
2017-05-21 18:10:01 (7 years ago) |
Latest Published: |
2020-10-23 23:41:58 (4 years ago) |
Status: |
Adware.NetFilter (on last analysis) |
|
Analysis Date: |
2020-10-23 23:41:58 (4 years ago) |
Overview
%sysdrive%\adwcleaner\quarantine\files\hzubehmzhrpmgztwljfzklwtmnbbsajp\my web shield.zip |
%programfiles%\my web shield |
%sysdrive%\adwcleaner\quarantine\files\ncktryjdwqmdrlhhnisphyxcitrscmfo\my web shield.zip |
%sysdrive%\adwcleaner\quarantine\files\ncktryjdwqmdrlhhnisphyxcitrscmfo |
%commonappdata%\my web shield |
%sysdrive%\adwcleaner\quarantine\files\iqrmxjdyyfhaiezndvezjtxhfncscqml\my web shield.zip |
%sysdrive%\adwcleaner\quarantine\files\iqrmxjdyyfhaiezndvezjtxhfncscqml |
%sysdrive%\adwcleaner\quarantine\1xvpfvjcrg |
%sysdrive%\adwcleaner\quarantine\1xvpfvjcrg\my web shield.zip |
%sysdrive%\adwcleaner\quarantine\files\yvwjevgbesxpojeuugqenbmxmeivkaud\my web shield.zip |
|
21.9% |
|
|
8.5% |
|
|
7.2% |
|
|
4.3% |
|
|
4.3% |
|
|
4.0% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.1% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.3% |
|
|
1.3% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
Windows 10 |
67.5% |
|
Windows 7 |
20.4% |
|
Windows 8.1 |
10.6% |
|
Windows 8 |
1.1% |
|
Windows Server 2012 R2 |
0.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0000b924 |
Name |
Size of data |
MD5 |
.text |
115200 |
c1017f9a7b07b8bbe3a9708b0d9d2a54 |
.rdata |
55808 |
5d846fbcf7c1879fa6b03aa2f8b139e0 |
.data |
9728 |
ff0c6e8202223dc421c5cf14d4f9e664 |
.pdata |
8192 |
083714bb0ec969511738051b22238d48 |
.rsrc |
150528 |
646af34d23090d21b4cbf4b774cd38c4 |
.reloc |
2560 |
d6cac6d56880401fe64c9fc7f3574dba |