How to remove $R1TRFVC.exe
- File Details
- Overview
- Analysis
$R1TRFVC.exe
The module $R1TRFVC.exe has been detected as Crack.AutoKMS
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
a7728562c9d2d733cac56f4eea629afb |
| Size: |
3 MB |
| First Published: |
2017-10-12 08:09:36 (8 years ago) |
| Latest Published: |
2021-02-11 16:09:24 (4 years ago) |
| Status: |
Crack.AutoKMS (on last analysis) |
|
| Analysis Date: |
2021-02-11 16:09:24 (4 years ago) |
Overview
| %desktop%\office_professional_plus_2013_32bit |
| %sysdrive%\$recycle.bin\s-1-5-21-3800689203-3613363116-849885084-1001 |
| %profile%\downloads |
| %profile%\downloads\programs |
| %profile% |
| %localappdata%\microsoft\windows\inetcache\ie |
| %sysdrive% |
| %sysdrive%\迅雷下载 |
| %desktop% |
| %temp%\ir_ext_temp_0\autoplay |
| KMSpico_setup.exe |
| $R1TRFVC.exe |
| KMSpico_setup_2.exe |
| KMSpico_setup (2).exe |
| KMSpico_setup (1).exe |
| KMSpico_v10.2.0_Setup.exe |
| $RKE2W1E.exe |
| Dc23.exe |
| KMSpico Mars 2018.exe |
| KMSpico_setup ativador.exe |
| KMSpico_setup(1) (2018_05_23 21_58_57 UTC).exe |
| KMSpico_setup(1).exe |
| KMSpico_setup (2018_05_24 20_22_43 UTC).exe |
| KMSpico_setup(1) (2018_05_24 20_22_43 UTC).exe |
| KMSpico_setup (2018_05_23 21_58_57 UTC).exe |
| Installer.exe |
| KMSpico_setup10.2.0.exe |
|
22.1% |
|
|
9.9% |
|
|
8.3% |
|
|
5.8% |
|
|
5.1% |
|
|
4.2% |
|
|
4.2% |
|
|
3.5% |
|
|
3.5% |
|
|
2.9% |
|
|
2.2% |
|
|
1.9% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
| Windows 10 |
68.8% |
|
| Windows 7 |
25.2% |
|
| Windows 8.1 |
4.5% |
|
| Windows 8 |
0.6% |
|
| Windows Server 2016 |
0.3% |
|
| Windows Embedded 8.1 |
0.3% |
|
| Windows XP |
0.3% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0000aa98 |
| Name |
Size of data |
MD5 |
| CODE |
41472 |
b7ea439d9c6d5ec722056c9243fb3054 |
| DATA |
1024 |
9b2268ed5360951559d8041925d025fb |
| BSS |
0 |
00000000000000000000000000000000 |
| .idata |
2560 |
df5f31e62e05c787fd29eed7071bf556 |
| .tls |
0 |
00000000000000000000000000000000 |
| .rdata |
512 |
14dfa4128117e7f94fe2f8d7dea374a0 |
| .reloc |
0 |
00000000000000000000000000000000 |
| .rsrc |
76288 |
12f7aef5a1e6e80277eba5766c6240cc |