How to remove updater.exe
- File Details
- Overview
- Analysis
updater.exe
The module updater.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
0aa8a751435a9dad25e9dec27d0c1561 |
Size: |
3 MB |
First Published: |
2017-05-21 06:07:26 (7 years ago) |
Latest Published: |
2023-08-27 23:29:05 (a year ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2023-08-27 23:29:05 (a year ago) |
%localappdata%\mail.ru |
%programfiles%\mail.ru\mailruupdater |
%temp%\amigo_scoped_dir_1494747673 |
%localappdata%\temp |
%sysdrive%\adwcleaner\quarantine\files\bjtwmbtdhzgvgzeyfkzhrbbtbwpkumkl |
%sysdrive%\adwcleaner\quarantine\files\pvsksebsuiqfxayptxlsqfqezeelcofg\mailruupdater |
%sysdrive%\adwcleaner\quarantine\files\cocjdarrfnwtmntsbqaawrsblfimdrae |
%sysdrive%\adwcleaner\quarantine\files\mjhlzanofkckcheczueepksplqrnyhuq\mailruupdater |
%profile%\natol\local settings\application data\mail.ru |
%localappdata%\mail.ru.$quar |
MailRuUpdater.exe |
updater.exe |
mrutmp.exe |
mailruupdater.exe |
A0618106.exe |
A0618105.exe |
7F08576281174D5E9A045B26A4BEA2EF |
A0189968.exe |
A0190023.exe |
A0310180.exe |
A0309174.exe |
A0310174.exe |
updater.exe.dul! |
MailRuUpdater.exe.vir |
A0071135.exe |
A0067808.exe |
MailRuUpdater.exe.q_Quarantine_2643FD16_q |
A0219843.exe |
A0219849.exe |
|
38.4% |
|
|
31.6% |
|
|
7.7% |
|
|
6.2% |
|
|
2.7% |
|
|
2.2% |
|
|
2.0% |
|
|
1.3% |
|
|
1.3% |
|
|
1.1% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
Windows 7 |
49.2% |
|
Windows 10 |
26.1% |
|
Windows XP |
12.5% |
|
Windows 8.1 |
10.5% |
|
Windows 8 |
0.7% |
|
Windows Vista |
0.7% |
|
Windows Embedded 8.1 |
0.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0016769c |
Name |
Size of data |
MD5 |
.text |
3233280 |
ae946533855f9fa0dcfa3873eae281cf |
.rdata |
617472 |
691f7b0a24987109967eaf557bdb5679 |
.data |
70144 |
3cbbc0344cee993e0b1fdcaad1503595 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
59392 |
929c45ba4e3178d4f5cf8730de06c8da |
.reloc |
139264 |
073011fe0a020d61d33673856a146421 |