How to remove $RB4KK59.exe
- File Details
- Overview
- Analysis
$RB4KK59.exe
The module $RB4KK59.exe has been detected as Adware.EoRezo
File Details
Product Name: |
|
MD5: |
42094f74bb121fd79234e51c16cfafab |
Size: |
205 KB |
First Published: |
2017-05-26 11:04:07 (6 years ago) |
Latest Published: |
2022-04-18 23:46:31 (2 years ago) |
Status: |
Adware.EoRezo (on last analysis) |
|
Analysis Date: |
2022-04-18 23:46:31 (2 years ago) |
%programfiles%\diskp |
%programfiles%\dpower |
%programfiles%\diskwmpower |
%sysdrive%\archivos de programa\diskwmpower |
%sysdrive%\adwcleaner\quarantine\files\wsygkmicgawxpozcmjzvssivsmelqejp |
%sysdrive%\adwcleaner\quarantine\files\xjghyzbgjaqzgyjjtpzobkdfagrtynyl |
%sysdrive%\adwcleaner\quarantine\files\kjtpkihadougbnabzjfrrwriobjsevwf |
%sysdrive%\adwcleaner\quarantine\files\daqxeseztimetjtplrgfiufoxpurnyni |
%programfiles% |
%sysdrive%\$recycle.bin |
DiskPower.exe |
$RB4KK59.exe |
|
18.4% |
|
|
13.9% |
|
|
8.6% |
|
|
6.6% |
|
|
4.9% |
|
|
4.9% |
|
|
3.7% |
|
|
3.7% |
|
|
3.3% |
|
|
3.3% |
|
|
2.9% |
|
|
1.6% |
|
|
1.6% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
Windows 10 |
49.4% |
|
Windows 7 |
33.9% |
|
Windows 8.1 |
11.4% |
|
Windows XP |
4.1% |
|
Windows 8 |
1.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0002ecc2 |
MVID: |
28c4a7a6-95a2-4996-aeab-88414745452c |
Typelib ID: |
030564b7-4643-4242-9149-37020811df6f |
Name |
Size of data |
MD5 |
.text |
183808 |
44c81ad5b5664f1444d247182f96341c |
.rsrc |
25600 |
37678c09950820bfe3b42284f450d0c5 |
.reloc |
512 |
a258c7b3c6cd7b80a9dbcb78a54a934d |