How to remove $R3IJV27.exe
- File Details
- Overview
- Analysis
$R3IJV27.exe
The module $R3IJV27.exe has been detected as PUP.ByteFence
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
56e7c92b3e6adc5d40d6ffd4a3d6f3c8 |
| Size: |
188 KB |
| First Published: |
2018-03-06 00:03:09 (7 years ago) |
| Latest Published: |
2024-04-28 23:09:55 (2 years ago) |
| Status: |
PUP.ByteFence (on last analysis) |
|
| Analysis Date: |
2024-04-28 23:09:55 (2 years ago) |
Overview
| %sysdrive%\$recycle.bin\s-1-5-21-280192331-2097082077-2465560919-1000 |
| %programfiles% |
| %sysdrive%\adwcleaner\quarantine |
| %sysdrive%\vtroot\harddiskvolume2\program files |
| %sysdrive%\$recycle.bin |
| %profile%\downloads\temp\bytefence anti-malware pro 3.19.0.0\app |
| %sysdrive%\programmi |
| %sysdrive%\adwcleaner\quarantine\v1\20180502.134310\3 |
| %sysdrive%\system volume information\_restore{f546ed53-16f9-458b-89db-439e69eb1e89} |
| %sysdrive%\system volume information\_restore{b126aa3e-f088-4c8b-8d39-448b43b8f656} |
| ByteFenceScan.exe |
| $R3IJV27.exe |
| ByteFenceScan.exe#46E26025C9A98B03 |
| A1522231.exe |
| A0028279.exe |
| A0020050.exe |
| A0000159.exe |
| $RCA3DSP.exe |
|
18.0% |
|
|
14.0% |
|
|
7.5% |
|
|
7.3% |
|
|
5.5% |
|
|
3.6% |
|
|
3.3% |
|
|
3.3% |
|
|
2.9% |
|
|
2.7% |
|
|
2.7% |
|
|
2.4% |
|
|
2.2% |
|
|
1.8% |
|
|
1.8% |
|
|
1.8% |
|
|
1.6% |
|
|
1.6% |
|
|
1.5% |
|
|
0.9% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
| Windows 7 |
45.4% |
|
| Windows 10 |
42.5% |
|
| Windows 8.1 |
9.2% |
|
| Windows XP |
2.0% |
|
| Windows 8 |
0.7% |
|
| Windows Vista |
0.2% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0002761e |
| MVID: |
98fbddf9-cc71-4d52-8eba-75b9c95b1157 |
| Typelib ID: |
c81283f9-0d37-480a-8c19-15bf224210a4 |
| Name |
Size of data |
MD5 |
| .text |
153600 |
62aeaeac11ddb00cd8983759f540d9e5 |
| .sdata |
1024 |
8f19339079b1b4e92a7dbd47c1d3662d |
| .rsrc |
26624 |
e0849be87d232c5f67ebfa6bc73c8ecb |
| .reloc |
512 |
a47f65185b748b7c2654fc422e597c31 |