How to remove $R818SBU.exe
- File Details
- Overview
- Analysis
$R818SBU.exe
The module $R818SBU.exe has been detected as Adware.ELEX
File Details
Product Name: |
|
MD5: |
b899133da3cb7913a37c8d484eeee55e |
Size: |
17 KB |
First Published: |
2017-06-14 09:06:46 (7 years ago) |
Latest Published: |
2020-01-08 06:53:40 (5 years ago) |
Status: |
Adware.ELEX (on last analysis) |
|
Analysis Date: |
2020-01-08 06:53:40 (5 years ago) |
%windir%\src_srv_2 |
%windir%\src_srv |
%sysdrive%\$recycle.bin\s-1-5-21-2064091024-215119237-3748243879-500 |
%sysdrive%\windows.old\windows\src_srv |
%sysdrive%\adwcleaner\quarantine\files\utxcyjnhsfhhzgcbwuljswzpqdnxdjeq |
%sysdrive%\adwcleaner\quarantine\files\dcirmhljeizuuyfcudmbuzexttaoxwso |
%windir% |
%sysdrive%\adwcleaner\quarantine\files |
winsrcsrv.exe |
$R818SBU.exe |
winsrcsrv.exe.quarantined |
|
37.5% |
|
|
29.2% |
|
|
14.6% |
|
|
4.2% |
|
|
3.1% |
|
|
3.1% |
|
|
2.1% |
|
|
2.1% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
Windows 10 |
74.2% |
|
Windows 7 |
18.6% |
|
Windows 8.1 |
6.2% |
|
Windows Vista |
1.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00005af2 |
MVID: |
3803514a-f884-4b99-8c9b-e49d844f33ab |
Typelib ID: |
9561dda3-622c-434d-923d-fdb7e19181d1 |
Name |
Size of data |
MD5 |
.text |
15360 |
c5340083167fb693eb6e017d13152ac8 |
.rsrc |
1536 |
3589dc97894f784a6f25818b7ce39c76 |
.reloc |
512 |
fa370e91632960221e1e409719e02d96 |