How to remove updater.exe
- File Details
- Overview
- Analysis
updater.exe
The module updater.exe has been detected as PUP.MailRu
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
1c2c80625b72c5ce1d4de73292a436be |
| Size: |
3 MB |
| First Published: |
2017-08-12 00:05:45 (8 years ago) |
| Latest Published: |
2022-11-24 23:37:17 (3 years ago) |
| Status: |
PUP.MailRu (on last analysis) |
|
| Analysis Date: |
2022-11-24 23:37:17 (3 years ago) |
Overview
| %localappdata%\mail.ru |
| %programfiles%\mail.ru\mailruupdater |
| %localappdata%\mail.ru\mailruupdater\us\2d0cd78004_d |
| %profile%\ser\local settings\application data\mail.ru |
| %sysdrive%\$recycle.bin\s-1-5-21-1250020974-3870281462-641059823-1000\$rlegzr6.ru\mailruupdater |
| %system%\config\systemprofile\appdata\local\mail.ru\mailruupdater\us\336327ca85_d |
| %sysdrive%\$recycle.bin\s-1-5-21-1250020974-3870281462-641059823-1000\$ry1t5gl.ru\mailruupdater\us\2d0cd78004_d |
| %sysdrive%\adwcleaner\quarantine\zdgc81tbdk |
| %sysdrive%\adwcleaner\quarantine\bbsqwy6yhk\mailruupdater |
| %sysdrive%\adwcleaner\quarantine\rqf69azbla\mailruupdater |
| MailRuUpdater.exe |
| updater.exe |
| mailruupdater.exe |
| na_runner.exe |
| MailRuUpdater_IObitDel.exe |
| 4DE0A0CD66D44F78B6969894DE834B0E |
| A0199311.exe |
| A0199312.exe |
| A0141861.exe |
| A0141831.exe |
| A0141832.exe |
| A0141900.exe |
| A0353741.exe |
| A0353754.exe |
| A0344663.exe |
| A0398852.exe |
| A0398851.exe |
| MailRuUpdater.exe.dat |
| $R74H31J.exe |
| A0007596.exe |
| MailRuUpdater(9).exe |
| 9C59E9EB1BE2435CB9FC05883792C912 |
| MailRuUpdater.exe__ |
| MailRuUpdater(15).exe |
| A0321828.exe |
| A0321821.exe |
|
58.6% |
|
|
7.2% |
|
|
6.5% |
|
|
4.3% |
|
|
3.9% |
|
|
2.5% |
|
|
2.2% |
|
|
1.5% |
|
|
1.2% |
|
|
1.1% |
|
|
1.0% |
|
|
0.8% |
|
|
0.8% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
| Windows 7 |
42.7% |
|
| Windows 10 |
41.1% |
|
| Windows 8.1 |
10.3% |
|
| Windows XP |
3.4% |
|
| Windows 8 |
2.2% |
|
| Windows Vista |
0.4% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00163b86 |
| Name |
Size of data |
MD5 |
| .text |
3213312 |
4e7d65a5f03e0bf66257e73116568c87 |
| .rdata |
611328 |
871e00e1efe67964993e80bd9f8a1a4a |
| .data |
69632 |
8c3790ff91fce3fc387bf80fa5d601e2 |
| .tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
| .rsrc |
59392 |
368e5d91538f68bbb7bb125a0a649f12 |
| .reloc |
138240 |
8cbb0156ef49963cfda602c8cde9deb3 |