Should I block it?

68%
68% of PCs block this file from running.

VersionsAdditional versions

2, 4, 1, 218 30.00%
2, 4, 1, 170 16.00%
2, 4, 1, 162 8.00%
2, 4, 1, 150 2.00%
2, 4, 1, 138 8.00%
2, 4, 1, 110 2.00%
2, 4, 1, 105 10.00%
2, 4, 1, 74 2.00%
2, 4, 0, 504 6.00%
2, 4, 0, 368 2.00%
2, 4, 0, 271 14.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumValueW, RegQueryInfoKeyW, OpenProcessToken, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, RegEnumKeyExW, RegDeleteValueW, RegDeleteKeyW, RegSetValueExW, RegCreateKeyExW, RegQueryValueExW, RegCloseKey, RegOpenKeyExW, RegQueryValueW, LookupAccountSidW, ConvertSidToStringSidW
gdi32.dll
DPtoLP, LineTo, MoveToEx, CreatePen, TextOutW, BitBlt, CreateCompatibleBitmap, SetViewportOrgEx, CreateCompatibleDC, SetTextColor, GetDeviceCaps, GetTextExtentPoint32W, SelectObject, GetStockObject, CreateFontIndirectW, GetObjectW, DeleteObject, FrameRgn, SelectClipRgn, FillRgn, CombineRgn, CreateRectRgn, CreatePolygonRgn, CreateRoundRectRgn, OffsetRgn, Rectangle, ExtTextOutW, SetBkColor, CreateSolidBrush, GetTextMetricsW, CreateDIBSection, StretchBlt, CreateBitmap, SetTextJustification, GetDCOrgEx, SetBkMode, DeleteDC, GetClipBox
gdiplus.dll
GdipDeleteGraphics, GdipCreateFromHDC, GdipDrawImageRectI, GdipImageGetFrameDimensionsCount, GdipImageGetFrameDimensionsList, GdipImageGetFrameCount, GdipImageSelectActiveFrame, GdipGetPropertyItemSize, GdipGetPropertyItem, GdiplusStartup, GdipCloneImage, GdipGetImageHeight, GdipGetImageWidth, GdiplusShutdown, GdipFree, GdipAlloc, GdipLoadImageFromFile, GdipLoadImageFromStream, GdipDisposeImage
kernel32.dll
OutputDebugStringW, WideCharToMultiByte, CallNamedPipeW, lstrcpynW, MulDiv, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, DisableThreadLibraryCalls, LoadLibraryExW, WaitForSingleObject, CreateSemaphoreA, GetTickCount, GetVersionExW, CompareStringW, GlobalAlloc, lstrlenA, InterlockedExchange, TlsFree, SetEvent, TlsAlloc, ResetEvent, CreateEventW, GetLocalTime, MoveFileExW, WriteFile, CreateFileW, GetWindowsDirectoryW, WinExec, lstrcatW, GetVersionExA, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetModuleFileNameA, SetFilePointer, ReadFile, FlushFileBuffers, GetConsoleMode, GetConsoleCP, GetStartupInfoW, GetFileType, SetHandleCount, IsValidCodePage, GetOEMCP, GetLocaleInfoW, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, HeapCreate, GetStdHandle, ExitProcess, CreateThread, ExitThread, GetCPInfo, GetCommandLineA, RtlUnwind, GetTempPathW, GetBinaryTypeW, FormatMessageW, FreeResource, CreateWaitableTimerA, SetWaitableTimer, SystemTimeToFileTime, ResumeThread, WaitNamedPipeW, OpenEventA, GetCurrentProcessId, TlsGetValue, CreateDirectoryW, CreateFileA, GetFileAttributesExW, LCMapStringW, GetStringTypeExW, GetUserDefaultLCID, FormatMessageA, DecodePointer, EncodePointer, InitializeCriticalSection, Sleep, GetStringTypeW, LocalFree, HeapSize, HeapReAlloc, HeapDestroy, InterlockedPopEntrySList, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, InterlockedPushEntrySList, InterlockedCompareExchange, SetEndOfFile, SetStdHandle, WriteConsoleW, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetModuleHandleA, GetModuleHandleW, GetProcAddress, GetFileAttributesW, GetVersion, FlushInstructionCache, GetCurrentProcess, lstrcpyW, lstrlenW, LoadLibraryW, GetLastError, SetLastError, FreeLibrary, GetACP, WaitForMultipleObjects, OpenEventW, HeapAlloc, CreateEventA, GetCurrentThreadId, ReleaseSemaphore, GetProcessHeap, HeapFree, CloseHandle, GetSystemTimeAsFileTime, MultiByteToWideChar, GlobalLock, GlobalUnlock, InterlockedDecrement, InterlockedIncrement, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, LeaveCriticalSection, EnterCriticalSection, RaiseException, LoadLibraryA, lstrcmpiW, OutputDebugStringA, GetModuleFileNameW, TlsSetValue
ole32.dll
RegisterDragDrop, CoTaskMemFree, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateInstance, StringFromGUID2, ReleaseStgMedium, CreateStreamOnHGlobal, StringFromCLSID, CoCreateGuid
shell32.dll
ShellExecuteW, SHGetSpecialFolderPathW, ShellExecuteExW, SHGetFolderPathW
shlwapi.dll
PathFindExtensionW, PathIsURLW
urlmon.dll
CoInternetParseUrl
user32.dll
RegisterClassW, SetRect, IsRectEmpty, SetWindowRgn, IsDialogMessageW, EnumWindows, IntersectRect, SystemParametersInfoA, IsIconic, GetWindowPlacement, LoadStringW, DestroyCursor, LoadImageW, CopyIcon, ChildWindowFromPoint, GetMenuState, GetMenuItemID, GetMenuItemRect, wsprintfW, GetClassInfoW, UnregisterClassA, EndDialog, SetWindowLongW, GetWindowLongW, SetWindowTextW, CreateIconIndirect, GetIconInfo, GetCursor, SetScrollInfo, SetScrollPos, GetScrollPos, GetKeyState, GetCursorInfo, EmptyClipboard, CloseClipboard, SetClipboardData, CharToOemW, GetCaretBlinkTime, SetCaretPos, SetCaretBlinkTime, ShowCaret, CreateCaret, OpenClipboard, EnableWindow, GetWindowTextW, GetWindowTextLengthW, SendMessageW, GetParent, GetDlgItem, IsWindow, SetWindowPos, MapWindowPoints, GetClientRect, GetMonitorInfoW, MonitorFromWindow, GetWindowRect, GetWindow, CharNextW, CreateWindowExW, LoadCursorW, GetClassNameW, MessageBoxW, CharUpperBuffW, SetWindowTextA, GetSystemMetrics, CallWindowProcW, PostMessageW, MoveWindow, ScreenToClient, UpdateWindow, ShowWindow, IsWindowVisible, LockWindowUpdate, SetTimer, KillTimer, SetFocus, CopyRect, PtInRect, InflateRect, OffsetRect, DrawTextW, RegisterClassExW, GetClassInfoExW, DialogBoxParamW, GetDesktopWindow, GetForegroundWindow, SetCursor, SetRectEmpty, GetSysColor, GetMenuItemInfoW, GetMenuItemCount, FindWindowExW, DestroyIcon, LoadBitmapW, ReleaseCapture, GetCapture, DrawEdge, DrawFocusRect, UnionRect, AdjustWindowRectEx, GetDlgCtrlID, SetCapture, IsWindowEnabled, ClientToScreen, GetMenu, DestroyWindow, DrawFrameControl, DrawStateW, FillRect, SystemParametersInfoW, WindowFromPoint, TrackPopupMenuEx, GetWindowDC, EndPaint, BeginPaint, GetSubMenu, TrackPopupMenu, LoadMenuW, GetAsyncKeyState, GetCursorPos, GetMessageW, TranslateMessage, DispatchMessageW, AppendMenuW, DeleteMenu, MonitorFromPoint, SetMenuItemInfoW, EqualRect, InvalidateRect, DestroyMenu, GetActiveWindow, GetFocus, GetKeyboardLayoutNameW, wsprintfA, ReleaseDC, GetDC, DefWindowProcW
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW
wininet.dll
CommitUrlCacheEntryW, UnlockUrlCacheEntryFileW, CreateUrlCacheEntryW, InternetReadFile, InternetQueryDataAvailable, InternetOpenUrlW, InternetSetOptionW, InternetCloseHandle, InternetOpenW, InternetSetCookieW, InternetGetCookieExW, InternetGetConnectedState, RetrieveUrlCacheEntryFileW
wtsapi32.dll
WTSFreeMemory, WTSEnumerateSessionsW, WTSQueryUserToken
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

MailRuSputnik.dll

MailRuSputnik Module by LLC Mail.Ru (Signed)

Remove MailRuSputnik.dll
Version:   2, 4, 1, 218
MD5:   1fed2580d82278628f93a62ae68b222a
SHA1:   a0154ab945b79d3f78cb9947615c5699479a03d6
SHA256:   9b75c5099c005ce138b085bd662ba3eff7db2df895eb283c229a602e59dd6d8a

Overview

mailrusputnik.dll is loaded as dynamic link library that runs in the context of Internet Explorer. It is installed in Internet Explorer as a Browser Helper Object (BHO) which has full acess to the web browser's behaviors and content. The file is digitally signed by LLC Mail.Ru which was issued by the Thawte certificate authority (CA). Note, some antivirus scanners have flagged this file, however it is not necessarily considered malware (see below for details).

DetailsDetails

File name:mailrusputnik.dll
Publisher:@Mail.Ru
Product name:MailRuSputnik Module
Typical file path:C:\Program Files\mail.ru\sputnik\mailrusputnik.dll
File version:2, 4, 1, 218
Size:1.75 MB (1,831,968 bytes)
Build date:7/5/2013 1:43 PM
Certificate
Issued to:LLC Mail.Ru
Authority (CA):Thawte
Effective date:Monday, September 12, 2011
Expiration date:Wednesday, July 2, 2014
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {8984B388-A5BB-4DF7-B274-77B879E179DB}
Internet Explorer toolbars
Located in the registry at 'SOFTWARE\Microsoft\Internet Explorer\Toolbar'
  • CLSID: {09900DE8-1DCA-443F-9243-26FF581438AF}
Internet Explorer URL search hooks
  • CLSID: {09900DE8-1DCA-443F-9243-26FF581438AF}
Internet Explorer web browsers
Located in the registry at 'SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser'
  • CLSID: {09900DE8-1DCA-443F-9243-26FF581438AF}
Internet Explorer shell browsers
  • CLSID: {09900DE8-1DCA-443F-9243-26FF581438AF}

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 48.00%
Windows 7 Home Basic 18.00%
Windows 7 Home Premium 18.00%
Windows 7 Ultimate 12.00%
Windows 7 Professional 4.00%

Distribution by countryDistribution by country

Russia installs about 32.00% of MailRuSputnik Module.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 25.71%
Lenovo 22.86%
Dell 11.43%
Hewlett-Packard 11.43%
Samsung 11.43%
GIGABYTE 8.57%
ASUS 5.71%
American Megatrends 2.86%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE