Remove BAIDUBUGRPT.EXE malware
BAIDUBUGRPT.EXE Malware Removal Guide
Manual removal instructions:
Antivirus Report of BAIDUBUGRPT.EXE:
baidubugrpt.exe
Full path on a computer: %LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE
Autostart registry keys:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{66D73B86-D8CA-457A-8222-84158DE9AA70}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=6|PROFILE=DOMAIN|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{9C4705F0-3161-4D5C-8484-3F72C660FF25}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=17|PROFILE=DOMAIN|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{F5CE8D45-B37D-4851-B149-905F804CA452}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=6|PROFILE=PRIVATE|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{452FFCC2-01CC-4DB1-B571-AB9327BA4CE8}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=17|PROFILE=PRIVATE|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{5C544041-1FD5-422A-8D10-49A897722D97}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=6|PROFILE=PUBLIC|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{B8486435-2A67-45CD-85B7-EE78ADB5122B}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=17|PROFILE=PUBLIC|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
Related Files:
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDU.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUASSISTANT.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUCLIENTRENDER.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUSERVICE.EXE
The file BAIDUBUGRPT.EXE is malware related.
You must delete the file BAIDUBUGRPT.EXE immediately!
Delete the file BAIDUBUGRPT.EXE without delay!
Kill the process BAIDUBUGRPT.EXE and remove BAIDUBUGRPT.EXE from the Windows startup.
BAIDUBUGRPT.EXE is related to: Generic.7E6, BAIDUBUGRPT.EXE.
Virustotal = 1/57
MD5 = 14FA9938923ED00FEF1ACE82C83F120E
File Size: 497144
File information:
OriginalFilename: BaiduBugRpt.exe
FileDescription: ????????
InternalName: BaiduBugRpt.exe
CompanyName: ????????(??)????
LegalCopyright: Copyright (C) 2016 Baidu Inc.
BAIDUBUGRPT.EXE | Malware |
BAIDUBUGRPT.EXE | Dangerous |
BAIDUBUGRPT.EXE | High Risk |
Autostart registry keys:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{66D73B86-D8CA-457A-8222-84158DE9AA70}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=6|PROFILE=DOMAIN|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{9C4705F0-3161-4D5C-8484-3F72C660FF25}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=17|PROFILE=DOMAIN|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{F5CE8D45-B37D-4851-B149-905F804CA452}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=6|PROFILE=PRIVATE|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{452FFCC2-01CC-4DB1-B571-AB9327BA4CE8}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=17|PROFILE=PRIVATE|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{5C544041-1FD5-422A-8D10-49A897722D97}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=6|PROFILE=PUBLIC|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES\{B8486435-2A67-45CD-85B7-EE78ADB5122B}: "V2.25|ACTION=ALLOW|ACTIVE=TRUE|DIR=IN|PROTOCOL=17|PROFILE=PUBLIC|APP=%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE|NAME=????????|"
Related Files:
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDU.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUASSISTANT.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUBUGRPT.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUCLIENTRENDER.EXE
%LOCAL APPDATA%\BAIDU\BAIDUCLIENT\2.5.0.1935\BAIDUSERVICE.EXE
The file BAIDUBUGRPT.EXE is malware related.
You must delete the file BAIDUBUGRPT.EXE immediately!
Delete the file BAIDUBUGRPT.EXE without delay!
Kill the process BAIDUBUGRPT.EXE and remove BAIDUBUGRPT.EXE from the Windows startup.
BAIDUBUGRPT.EXE is related to: Generic.7E6, BAIDUBUGRPT.EXE.
Virustotal = 1/57
MD5 = 14FA9938923ED00FEF1ACE82C83F120E
File Size: 497144
File information:
OriginalFilename: BaiduBugRpt.exe
FileDescription: ????????
InternalName: BaiduBugRpt.exe
CompanyName: ????????(??)????
LegalCopyright: Copyright (C) 2016 Baidu Inc.
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.