Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

1, 0, 0, 123 46.67%
1, 0, 0, 98 6.67%
1, 0, 0, 98 6.67%
1, 0, 0, 91 20.00%
1, 0, 0, 40 20.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyExW, GetTokenInformation, AllocateAndInitializeSid, EqualSid, FreeSid, RegOpenKeyExW, RegCreateKeyExW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegQueryValueExW, RegSetValueExW, RegQueryInfoKeyW, OpenProcessToken, LookupAccountSidW, ConvertSidToStringSidW
comctl32.dll
InitCommonControlsEx
gdi32.dll
DeleteObject, SelectObject, DeleteDC, CreateCompatibleBitmap, CreateCompatibleDC, GetStockObject, BitBlt, GetDeviceCaps, CreateSolidBrush, GetObjectW
kernel32.dll
DllMain
ole32.dll
CoCreateGuid, StringFromCLSID, CoInitialize, CoUninitialize, OleUninitialize, OleInitialize, CreateStreamOnHGlobal, CLSIDFromString, CLSIDFromProgID, CoGetClassObject, OleLockRunning, StringFromGUID2, CoTaskMemFree, CoCreateInstance, CoTaskMemRealloc, CoTaskMemAlloc
shell32.dll
CommandLineToArgvW, SHGetSpecialFolderPathW, ShellExecuteExW, SHGetFolderPathW
urlmon.dll
CoInternetParseUrl
user32.dll
SetWindowLongW, SetCapture, RedrawWindow, GetDesktopWindow, GetWindowLongW, DefWindowProcW, CharNextW, GetSysColor, MoveWindow, SetWindowPos, wsprintfW, LoadStringA, GetClientRect, ClientToScreen, ScreenToClient, GetDC, ReleaseDC, InvalidateRect, UnregisterClassA, MessageBoxW, RegisterWindowMessageW, GetWindowTextLengthW, GetWindowTextW, SetWindowTextW, CreateAcceleratorTableW, CreateWindowExW, RegisterClassExW, LoadCursorW, GetClassInfoExW, IsWindow, SendMessageW, SetFocus, GetFocus, GetWindow, DestroyAcceleratorTable, IsChild, BeginPaint, EndPaint, CallWindowProcW, DestroyWindow, FillRect, ReleaseCapture, GetClassNameW, GetDlgItem, GetParent, InvalidateRgn, LoadStringW
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
ws2_32.dll
getaddrinfo, WSASocketW, WSASend, WSARecv, freeaddrinfo
wtsapi32.dll
WTSQueryUserToken, WTSEnumerateSessionsW, WTSFreeMemory

MailRuUpdater.exe

MailRuUpdater by LLC Mail.Ru (Signed)

Remove MailRuUpdater.exe
Version:   1, 0, 0, 40
MD5:   4060317e55f2d948b08c8d70c9561f19
SHA1:   3bdf5c100be8f0ab08f146a6b3aede61d102b07c
SHA256:   769e75e9d43e42840d6bae5b31a7622a4352f049f586e6ddd95fb11c91be8430

What is MailRuUpdater.exe?

Mail.Ru updater is the software updater program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found. The updater will check for updates remotely and install them based on an internal schedule.

Overview

mailruupdater.exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by LLC Mail.Ru which was issued by the Thawte certificate authority (CA). Note, some antivirus scanners have flagged this file, however it is not necessarily considered malware (see below for details).

DetailsDetails

File name:mailruupdater.exe
Publisher:Mail.Ru
Product name:MailRuUpdater
Description:Mail.Ru updater
Typical file path:C:\users\user\appdata\local\mail.ru\mailruupdater.exe
File version:1, 0, 0, 40
Size:1.39 MB (1,462,376 bytes)
Certificate
Issued to:LLC Mail.Ru
Authority (CA):Thawte
Effective date:Monday, September 12, 2011
Expiration date:Wednesday, July 2, 2014
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'MailRuUpdater' → C:\users\user\appdata\Local\Mail.Ru\MailRuUpdater.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00112258%
0.028634%
Kernel CPU:0.00098485%
0.013761%
User CPU:0.00013773%
0.014873%
Kernel CPU time:410,049,066 ms/min
100,923,805ms/min
Memory
Private memory:2.81 MB
21.59 MB
Private (maximum):7.81 MB
Private (minimum):3.22 MB
Non-paged memory:2.81 MB
21.59 MB
Virtual memory:62.19 MB
140.96 MB
Virtual memory (peak):69.75 MB
169.69 MB
Working set:5.82 MB
18.61 MB
Working set (peak):8.22 MB
37.95 MB
Resource allocations
Threads:4
12
Handles:140
600
GUI GDI count:9
103
GUI GDI peak:9
142
GUI USER count:6
49
GUI USER peak:4
71

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command lines:
  • "C:\Documents and Settings\user\Application data\mail.ru\mailruupdater.exe"
  • "C:\users\user\appdata\local\mail.ru\mailruupdater.exe"
Owner:User

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 40.00%
Microsoft Windows XP 33.33%
Windows 7 Home Basic 20.00%
Windows 7 Home Premium 6.67%

Distribution by countryDistribution by country

UA installs about 46.67% of MailRuUpdater.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Lenovo 50.00%
ASUS 37.50%
Hewlett-Packard 6.25%
Acer 6.25%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE