How to remove $RI6Y1Y4.exe
- File Details
- Overview
- Analysis
$RI6Y1Y4.exe
The module $RI6Y1Y4.exe has been detected as General Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d10beef123ae75007a7da52dd7a743d8 |
Size: |
6 MB |
First Published: |
2017-09-14 02:06:26 (7 years ago) |
Latest Published: |
2017-09-14 02:06:26 (7 years ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2017-09-14 02:06:26 (7 years ago) |
Overview
%sysdrive%\$recycle.bin\s-1-5-21-3070786210-3025733109-3167193981-1001 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00009a58 |
Name |
Size of data |
MD5 |
CODE |
37376 |
796c97a17dbe0ad9a1c914ed1e945e48 |
DATA |
1024 |
1bd77779467ab96dd74fe03fb630c967 |
BSS |
0 |
00000000000000000000000000000000 |
.idata |
2560 |
7932207301aa0be68ad680d185f2dca1 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
9ba824905bf9c7922b6fc87a38b74366 |
.reloc |
0 |
00000000000000000000000000000000 |
.rsrc |
9216 |
cf1a0ef24b0ce5d4bf604995468f5626 |