How to remove $RFC8QCZ.dll
- File Details
- Overview
- Analysis
$RFC8QCZ.dll
The module $RFC8QCZ.dll has been detected as Trojan.Packed
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
30274431742250fde93b7c45ef4626ee |
| Size: |
840 KB |
| First Published: |
2018-01-12 15:02:09 (7 years ago) |
| Latest Published: |
2021-01-07 11:18:01 (4 years ago) |
| Status: |
Trojan.Packed (on last analysis) |
|
| Analysis Date: |
2021-01-07 11:18:01 (4 years ago) |
| %sysdrive%\my games\bridge constructor portal\bridge_constructor_portal_data |
| %sysdrive%\детское\игры\door_kickers_v1.1.0 |
| %sysdrive%\hry |
| %desktop%\getting.over.it.with.bennett.foddy.v1.5762\gettingoverit_data |
| %profile%\downloads\getting.over.it.with.bennett.foddy.v1.5762\getting.over.it.with.bennett.foddy.v1.5762\gettingoverit_data |
| %sysdrive% |
| %programfiles% |
| %profile%\downloads\bridge constructor portal\bridge_constructor_portal_data |
| %sysdrive%\$recycle.bin |
| %sysdrive%\games\getting over it with bennett foddy v1.571\gettingoverit_data |
| steam_api.dll |
| $RFC8QCZ.dll |
| STEAM_API.DLL |
|
23.5% |
|
|
12.2% |
|
|
8.7% |
|
|
4.3% |
|
|
3.5% |
|
|
3.5% |
|
|
3.5% |
|
|
3.5% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
2.6% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
1.7% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
| Windows 10 |
63.8% |
|
| Windows 7 |
28.4% |
|
| Windows 8.1 |
6.0% |
|
| Windows XP |
0.9% |
|
| Windows 8 |
0.9% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x10000000 |
| Entry Address: |
0x00cf7986 |
| Name |
Size of data |
MD5 |
| .text |
0 |
00000000000000000000000000000000 |
| .rdata |
0 |
00000000000000000000000000000000 |
| .data |
0 |
00000000000000000000000000000000 |
| .UPX0 |
0 |
00000000000000000000000000000000 |
| .UPX1 |
857088 |
110de26d4bc08d1e8fa8dd34998c3697 |
| .reloc |
512 |
eefcc0adb0d4730e36f0c7b57a84d7fc |
| .rsrc |
2048 |
00544bdb39fbe29fba956f8c62f20173 |