Information about $R05FGYU.exe
- File Details
- Overview
- Analysis
$R05FGYU.exe
File Details
Product Name: |
|
Company Name: |
|
MD5: |
87e78cbd03fc0149b586c5eb6078868b |
Size: |
8 MB |
First Published: |
2017-09-14 02:09:00 (7 years ago) |
Latest Published: |
2020-10-05 13:33:15 (4 years ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2020-10-05 13:33:15 (4 years ago) |
Overview
%programfiles%\reimage\reimage protector |
%sysdrive%\$recycle.bin\s-1-5-21-2945422090-795710468-984463480-1000 |
%sysdrive%\windows.old\program files\reimage\reimage protector |
%appdata%\zhp\quarantine |
%sysdrive%\adwcleaner\quarantine\fraqbc8wsa\reimage protector |
%sysdrive%\$recycle.bin\s-1-5-21-3990223270-2799057171-3402945530-1001\$r8uks4w\reimage protector |
%sysdrive%\adwcleaner\quarantine\rqf69azbla\reimage protector |
%programfiles%\reimage.$quar\reimage protector |
%sysdrive%\adwcleaner\quarantine\exuieaoeii\reimage protector |
%commonappdata%\bullguard\alertreports\bit\4\1\d5fda0316c124ea7862a584ce6d70a9f |
ReiGuard.exe |
$R05FGYU.exe |
reiguard.exe |
$R766PPN.exe |
asasasasa.exe |
1.exe |
|
14.3% |
|
|
12.7% |
|
|
8.2% |
|
|
7.6% |
|
|
5.2% |
|
|
5.1% |
|
|
3.0% |
|
|
2.8% |
|
|
2.5% |
|
|
2.4% |
|
|
2.3% |
|
|
2.3% |
|
|
1.9% |
|
|
1.8% |
|
|
1.7% |
|
|
1.5% |
|
|
1.4% |
|
|
1.1% |
|
|
1.0% |
|
|
1.0% |
|
|
0.9% |
|
|
0.9% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
55.4% |
|
Windows 7 |
30.9% |
|
Windows 8.1 |
9.7% |
|
Windows 8 |
3.2% |
|
Windows Vista |
0.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0045e460 |
Name |
Size of data |
MD5 |
.text |
5301760 |
bedb80baff716ea03ec3abd7e94d08ca |
.rdata |
2545664 |
b627325c844baf92397279a11f192e52 |
.data |
404480 |
c4794dc438660bb35a9d85ba2e44d23c |
.pdata |
208384 |
d3d1924817d3381e270304ee6a8d9208 |
text |
5120 |
f652dd309012adbe0aceb8720bd00879 |
data |
5120 |
709856458e73182f47466ff0d84babad |
.rsrc |
2048 |
bf1ca537e1dcb970e6edd13bfcd054c8 |
.reloc |
116224 |
2c3ab0a9f4cd95912706fd550f68303f |