How to remove $RHHAFQ3.exe

$RHHAFQ3.exe Removal: How to Get Rid of $RHHAFQ3.exeaa73105d2bff5c9fc335ea04a759d446

$RHHAFQ3.exe

The module $RHHAFQ3.exe has been detected as PUP.MailRu

$RHHAFQ3.exe
MD5: aa73105d2bff5c9fc335ea04a759d446
Size: 1 MB
First Published: 2017-05-21 04:02:44 (2 years ago)
Latest Published: 2018-12-20 09:08:56 (a month ago)
Status: PUP.MailRu (on last analysis)
Analysis Date: 2018-12-20 09:08:56 (a month ago)
Signed By: LLC Mail.Ru
Status: Valid
%localappdata%\mail.ru
%sysdrive%\adwcleaner\quarantine\files\icovagzbrtckdkfxwmdramtmlaorjqgw
%sysdrive%\adwcleaner\quarantine\files\irwhtpoahaxrkxsyiljuhiymbmkcuqxb
%sysdrive%\adwcleaner\quarantine\files\cdkbdainxoojoeqfbjbhllnjdqfkkumx
%sysdrive%\adwcleaner\quarantine\files\cocjdarrfnwtmntsbqaawrsblfimdrae
%sysdrive%\adwcleaner\quarantine\files\bjtwmbtdhzgvgzeyfkzhrbbtbwpkumkl
%sysdrive%\adwcleaner\quarantine\files\jdsemiupyeyjqjgfcjtzmaftbezcghuc
%profile%\11\local settings\application data\mail.ru
%sysdrive%\adwcleaner\quarantine\files\dkaxgfkxsdlvrlkegexhosclpekmkers
%sysdrive%\adwcleaner\quarantine\files\zahfokrwpfvpbcdiypztlfoevcsknwve
mrkeeper.exe
$RHHAFQ3.exe
mrkeeper.exe.vir
A0004470.exe
A0007886.exe
A0350477.exe
A0350574.exe
A0181693.exe
mrkeeper_IObitDel.exe
A0748958.exe
A0067809.exe
A0387719.exe
A0004421.exe
A0353744.exe
A0055073.exe
A0220182.exe
Dc14.exe
$RXLR3D0.exe
A0054225.exe
A0043986.exe
A0295097.exe
A1093358.exe
A0204456.exe
$RS3EA0P.exe
A0061946.exe
mrkeeper.exe#A076802CFDF5EAA9
34.4%
23.5%
5.5%
4.6%
4.0%
3.2%
2.2%
2.2%
1.6%
1.5%
1.1%
0.9%
0.9%
0.9%
0.8%
0.8%
0.7%
0.7%
0.7%
0.5%
0.5%
0.5%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
Windows 7 43.7%
Windows 10 37.0%
Windows 8.1 10.7%
Windows XP 6.6%
Windows 8 1.7%
Windows Vista 0.2%
Windows Embedded 8.1 0.1%
Windows Server 2008 R2 0.1%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x0008efc8

PE Sections:

Name Size of data MD5
.text 1124352 5a0cabde01cef496a37af22dceb1fa59
.rdata 205824 469d91450f535745586729daa93dc294
.data 44032 6f93a6689a855c0e2641d43ac6007d20
.tls 512 bf619eac0cdf3f68d496ea9344137e8b
.rsrc 512 35fc15bd421abfdbbd86a56fb504440f
.reloc 65024 ea8e58c202515a2b1afdb1ae4ffa3d71

More information:

Download GridinSoft Anti-Malware - Removal tool for $RHHAFQ3.exe