How to remove updater.exe

updater.exe

The module updater.exe has been detected as PUP.MailRu

updater.exe
Product Name:

MailRuUpdater

Company Name:

Mail.Ru

MD5: 1c2c80625b72c5ce1d4de73292a436be
Size: 3 MB
First Published: 2017-08-12 00:05:45 (7 years ago)
Latest Published: 2022-11-24 23:37:17 (2 years ago)
Status: PUP.MailRu (on last analysis)
Analysis Date: 2022-11-24 23:37:17 (2 years ago)
Signed By: LLC Mail.Ru
Status: Valid
%localappdata%\mail.ru
%programfiles%\mail.ru\mailruupdater
%localappdata%\mail.ru\mailruupdater\us\2d0cd78004_d
%profile%\ser\local settings\application data\mail.ru
%sysdrive%\$recycle.bin\s-1-5-21-1250020974-3870281462-641059823-1000\$rlegzr6.ru\mailruupdater
%system%\config\systemprofile\appdata\local\mail.ru\mailruupdater\us\336327ca85_d
%sysdrive%\$recycle.bin\s-1-5-21-1250020974-3870281462-641059823-1000\$ry1t5gl.ru\mailruupdater\us\2d0cd78004_d
%sysdrive%\adwcleaner\quarantine\zdgc81tbdk
%sysdrive%\adwcleaner\quarantine\bbsqwy6yhk\mailruupdater
%sysdrive%\adwcleaner\quarantine\rqf69azbla\mailruupdater
MailRuUpdater.exe
updater.exe
mailruupdater.exe
na_runner.exe
MailRuUpdater_IObitDel.exe
4DE0A0CD66D44F78B6969894DE834B0E
A0199311.exe
A0199312.exe
A0141861.exe
A0141831.exe
A0141832.exe
A0141900.exe
A0353741.exe
A0353754.exe
A0344663.exe
A0398852.exe
A0398851.exe
MailRuUpdater.exe.dat
$R74H31J.exe
A0007596.exe
MailRuUpdater(9).exe
9C59E9EB1BE2435CB9FC05883792C912
MailRuUpdater.exe__
MailRuUpdater(15).exe
A0321828.exe
A0321821.exe
Russia 58.6%
Kazakhstan 7.2%
Belarus 6.5%
Ukraine 4.3%
Azerbaijan 3.9%
Vietnam 2.5%
Poland 2.2%
Turkey 1.5%
Moldova 1.2%
Indonesia 1.1%
Kyrgyzstan 1.0%
South Korea 0.8%
Taiwan 0.8%
Egypt 0.6%
Lithuania 0.6%
Estonia 0.5%
Latvia 0.5%
Finland 0.5%
Germany 0.5%
Thailand 0.5%
Brazil 0.5%
Armenia 0.4%
Canada 0.4%
Bulgaria 0.4%
Israel 0.3%
Algeria 0.3%
United States 0.3%
India 0.3%
Serbia 0.2%
Spain 0.2%
Morocco 0.2%
Iran 0.1%
Italy 0.1%
Mexico 0.1%
Tajikistan 0.1%
Greece 0.1%
Belgium 0.1%
Georgia 0.1%
Hong Kong 0.1%
Tunisia 0.1%
Netherlands 0.1%
Saudi Arabia 0.1%
Liberia 0.1%
Portugal 0.1%
Uzbekistan 0.1%
Philippines 0.1%
Oman 0.1%
Windows 7 42.7%
Windows 10 41.1%
Windows 8.1 10.3%
Windows XP 3.4%
Windows 8 2.2%
Windows Vista 0.4%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00163b86

PE Sections:

Name Size of data MD5
.text 3213312 4e7d65a5f03e0bf66257e73116568c87
.rdata 611328 871e00e1efe67964993e80bd9f8a1a4a
.data 69632 8c3790ff91fce3fc387bf80fa5d601e2
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 59392 368e5d91538f68bbb7bb125a0a649f12
.reloc 138240 8cbb0156ef49963cfda602c8cde9deb3

More information:

Download GridinSoft Anti-Malware - Removal tool for updater.exe
­