How to remove $R21IEBH.exe

$R21IEBH.exe

The module $R21IEBH.exe has been detected as Adware.InstallCore

$R21IEBH.exe
Product Name:

Wizard

Company Name:

Application

MD5: d4a382a039fce69ea5b8e68d57438161
Size: 2 MB
First Published: 2017-11-22 06:02:14 (6 years ago)
Latest Published: 2017-11-22 09:05:16 (6 years ago)
Status: Adware.InstallCore (on last analysis)
Analysis Date: 2017-11-22 09:05:16 (6 years ago)
Signed By: No Zebra Network Ltda.
Status: Valid
%profile%\downloads
%sysdrive%\$recycle.bin\s-1-5-21-1637386330-1313342142-3492745201-1000
Baixaki_trojan-killer (1).exe
$R21IEBH.exe
100.0%
Windows 7 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0000f3bc

PE Sections:

Name Size of data MD5
.text 57344 434dd27f411be44f24c71c660506d1cb
.itext 3072 31d2c0992c2104514a2e4d29f1b0aa33
.data 3584 969ccd0368074bb66069f6791321a500
.bss 0 00000000000000000000000000000000
.idata 3584 94012dc57e6c954757bdae044cba54a4
.tls 0 00000000000000000000000000000000
.rdata 512 8e2aa0e7a135122ada33304886872a4a
.rsrc 209408 4d1c0af96b1711eae80e9b4ab94e88a1

More information:

Download GridinSoft Anti-Malware - Removal tool for $R21IEBH.exe