How to remove xigua.exe
xigua.exe
The module xigua.exe has been detected as Hijack.IE
File Details
Product Name: | 西瓜 |
MD5: | 0068ce820f7d398069286af4bdf42cdc |
Size: | 465 KB |
First Published: | 2017-05-21 05:04:57 (7 years ago) |
Latest Published: | 2020-12-19 15:27:50 (4 years ago) |
Status: | Hijack.IE (on last analysis) | |
Analysis Date: | 2020-12-19 15:27:50 (4 years ago) |
Overview
Signed By: | Chengdu Yijia Advertising Co. Ltd. |
Status: | Valid |
Common Places:
%programfiles%\xigua\2.12.0.5 |
%programfiles%\xigua |
%sysdrive%\西瓜 |
%sysdrive%\new folder (2) |
%sysdrive% |
%profile%\downloads\xigua_green\app |
%sysdrive%\西瓜應用程式\xigua_green_dvdplays\xigua_green\app |
%sysdrive%\程序2\西瓜影音 |
%programfiles%\xigua |
%programfiles%\xigua |
Geography:
64.6% | ||
12.2% | ||
10.2% | ||
4.1% | ||
2.0% | ||
2.0% | ||
2.0% | ||
1.4% | ||
1.4% |
OS Version:
Windows 10 | 55.1% | |
Windows 7 | 32.7% | |
Windows 8.1 | 9.5% | |
Windows 8 | 1.4% | |
Windows XP | 1.4% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x30000000 |
Entry Address: | 0x0000806f |
PE Sections:
Name | Size of data | MD5 |
.text | 57856 | 998e03d297ce029cb9c159a83953d8c0 |
.rdata | 22016 | 406830e666b54c51324422d98a411867 |
.data | 4608 | 3981ade8481aa867d0900371bb3ec8cd |
.rsrc | 374784 | 9bf0ed76fa048a1ba71f76eaad63ec58 |
.reloc | 9216 | 8115f4b05489d04b99cc2d15478d2397 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for xigua.exe