How to remove $RFAYMQO.exe
- File Details
- Overview
- Analysis
$RFAYMQO.exe
The module $RFAYMQO.exe has been detected as General Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
ab0314b4ac2e6d39fd8d9be3d10e2a95 |
Size: |
6 MB |
First Published: |
2017-05-21 23:06:57 (7 years ago) |
Latest Published: |
2023-07-30 23:30:34 (a year ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2023-07-30 23:30:34 (a year ago) |
%profile%\downloads |
%profile% |
%desktop% |
%sysdrive%\baiduyundownload |
%sysdrive% |
%sysdrive%\程式庫\微軟驗證軟體 |
%sysdrive%\$recycle.bin |
%sysdrive%\$recycle.bin |
%profile% |
%sysdrive%\jl-softwares (for installation) |
Windows 10 |
76.2% |
|
Windows 7 |
14.3% |
|
Windows 8 |
4.8% |
|
Windows 8.1 |
4.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000123df |
Name |
Size of data |
MD5 |
.text |
72192 |
3c72b06e02f4afbad83d6aa896575140 |
.rdata |
13824 |
e0f8587cdb9024359378a76f4880a9b2 |
.data |
2048 |
4cb364a72e7c9869ec05686d3fe4aabe |
.rsrc |
192000 |
dfab326587da0978f359435effb9b87a |