How to remove $RCAQ7VN.exe
- File Details
- Overview
- Analysis
$RCAQ7VN.exe
The module $RCAQ7VN.exe has been detected as Trojan.Zpevdo
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8f02a93beadf536f5bac99f1f89aaee8 |
Size: |
281 KB |
First Published: |
2017-10-12 07:08:26 (7 years ago) |
Latest Published: |
2024-04-13 23:01:18 (a year ago) |
Status: |
Trojan.Zpevdo (on last analysis) |
|
Analysis Date: |
2024-04-13 23:01:18 (a year ago) |
%sysdrive%\компьютер\белофф |
%sysdrive%\проги\белофф |
%sysdrive%\game\образы\beloff_2018.5 |
%sysdrive%\программы\beloff_2017.8 |
%desktop%\проги\beloff_2017.5 |
%sysdrive%\$recycle.bin |
%sysdrive%\beloff 2018-8.1 |
%temp%\rar$exa4216.48052 |
%sysdrive%\02-программы для установки на комп\02-драйвера и программы\beloff 2o18.9 minstall vs wpi (2018) pc |
%sysdrive%\загрузки |
P.Razblocker.exe |
$RCAQ7VN.exe |
|
55.8% |
|
|
11.6% |
|
|
11.6% |
|
|
7.0% |
|
|
4.7% |
|
|
4.7% |
|
|
2.3% |
|
|
2.3% |
|
Windows 10 |
46.5% |
|
Windows 7 |
41.9% |
|
Windows 8.1 |
11.6% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000193af |
Name |
Size of data |
MD5 |
.text |
101888 |
c624ae421a6c4f702f7f2c2c23c4aef1 |
.rdata |
16384 |
746f7c2df0aa9b117542dd3e6429f2f1 |
.data |
2048 |
07f7ba027ce50640e9ee99eddca1959f |
.rsrc |
17408 |
5a47df913ab6bf55780089bcf46d0f50 |