How to remove $RI6Y1Y4.exe

$RI6Y1Y4.exe

The module $RI6Y1Y4.exe has been detected as General Threat

$RI6Y1Y4.exe
Product Name:

超级硬盘数据恢复软件

Company Name:

上海数擎信息科技有限公司

MD5: d10beef123ae75007a7da52dd7a743d8
Size: 6 MB
First Published: 2017-09-14 02:06:26 (6 years ago)
Latest Published: 2017-09-14 02:06:26 (6 years ago)
Status: General Threat (on last analysis)
Analysis Date: 2017-09-14 02:06:26 (6 years ago)
Signed By: 上海数擎信息科技有限公司
Status: Valid
%sysdrive%\$recycle.bin\s-1-5-21-3070786210-3025733109-3167193981-1001
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00009a58

PE Sections:

Name Size of data MD5
CODE 37376 796c97a17dbe0ad9a1c914ed1e945e48
DATA 1024 1bd77779467ab96dd74fe03fb630c967
BSS 0 00000000000000000000000000000000
.idata 2560 7932207301aa0be68ad680d185f2dca1
.tls 0 00000000000000000000000000000000
.rdata 512 9ba824905bf9c7922b6fc87a38b74366
.reloc 0 00000000000000000000000000000000
.rsrc 9216 cf1a0ef24b0ce5d4bf604995468f5626

More information:

Download GridinSoft Anti-Malware - Removal tool for $RI6Y1Y4.exe