How to remove $RJZKK7M.exe
- File Details
- Overview
- Analysis
$RJZKK7M.exe
The module $RJZKK7M.exe has been detected as Adware.EpicNet
File Details
Product Name: |
|
MD5: |
b666de5acfc3f611f8157b88fb15f2b5 |
Size: |
1 MB |
First Published: |
2017-09-06 23:09:18 (7 years ago) |
Latest Published: |
2018-05-28 19:10:45 (6 years ago) |
Status: |
Adware.EpicNet (on last analysis) |
|
Analysis Date: |
2018-05-28 19:10:45 (6 years ago) |
%temp%\csrss |
%sysdrive%\windows.old\users\hp i7\appdata\local\temp\csrss |
%sysdrive%\$recycle.bin\s-1-5-21-3876878193-4111371118-147062495-1000 |
%sysdrive%\windows.old\users\я\appdata\local\temp\csrss |
%sysdrive%\windows.old\users\hp\appdata\local\temp\csrss |
%sysdrive%\$recycle.bin\s-1-5-21-3318018984-3384901961-1671041059-1001 |
%temp% |
%sysdrive%\windows.old\users\x\appdata\local\temp |
patch.exe |
$RJZKK7M.exe |
$R3ST6M1.exe |
|
16.1% |
|
|
7.3% |
|
|
6.3% |
|
|
4.4% |
|
|
4.4% |
|
|
4.1% |
|
|
3.8% |
|
|
3.8% |
|
|
3.8% |
|
|
3.8% |
|
|
3.2% |
|
|
3.2% |
|
|
2.2% |
|
|
2.2% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.6% |
|
|
1.3% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
Windows 10 |
49.2% |
|
Windows 7 |
40.1% |
|
Windows 8.1 |
9.5% |
|
Windows 8 |
0.9% |
|
Windows Vista |
0.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00004130 |
Name |
Size of data |
MD5 |
.text |
25088 |
ddb310d9070f638fff9ff50d9eda3f15 |
.rdata |
13312 |
361f2291bc90ebc8b4f89c100572b738 |
.data |
512 |
347b87bfdf340c370ed0ac81b382c50d |
.pdata |
1536 |
08397eb62ff69d086112a327b724e518 |
.rsrc |
1696768 |
1c5f253649d02909363decaca592081a |
.reloc |
512 |
99bdd0d8d84b2a54869f1d07de9eb995 |