How to remove $R46Z7LQ.exe
- File Details
- Overview
- Analysis
$R46Z7LQ.exe
The module $R46Z7LQ.exe has been detected as PUP.ShieldApps
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2a77cac9c2066044386910c1757c8f03 |
Size: |
8 MB |
First Published: |
2018-04-20 20:09:25 (6 years ago) |
Latest Published: |
2020-11-13 19:39:23 (4 years ago) |
Status: |
PUP.ShieldApps (on last analysis) |
|
Analysis Date: |
2020-11-13 19:39:23 (4 years ago) |
Overview
%profile% |
%sysdrive%\zzz software\anti virus |
%sysdrive%\descargas\compressed |
%profile%\downloads |
%profile%\music |
%sysdrive%\$recycle.bin\s-1-5-21-3527053788-3220156302-1422283546-1003\$rzmprnv.rar |
%sysdrive%\$recycle.bin\s-1-5-21-3431610550-1180774057-2488100115-1008\$ra4s50d.rar |
%desktop%\movies χχχ\1. μ-torrent_movies xxx\ransomware defender 3.8.5 |
%profile%\downloads\downloads\ransomware defender 3.8.5 |
%sysdrive% |
RansomwareDefenderSetup.exe |
$R46Z7LQ.exe |
|
20.0% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
Windows 10 |
60.0% |
|
Windows 7 |
40.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000d0d69 |
Name |
Size of data |
MD5 |
.text |
1152000 |
91b97cd23951ddd506ed495c686d4214 |
.rdata |
345088 |
688a9972caf25af2083d888377193b86 |
.data |
9216 |
ccb0d943687ca19a1d417c23957738a5 |
.rsrc |
152576 |
80fbade13ad63e965879ab5a9106ecba |
.reloc |
84992 |
6f23aabb533cc3b84ba338dd1ce0b076 |