How to remove $RNFRYWG.exe
- File Details
- Overview
- Analysis
$RNFRYWG.exe
The module $RNFRYWG.exe has been detected as Trojan.Dropper
File Details
Product Name: |
|
MD5: |
b6cc62d9985cdb41e8df0fc399248c73 |
Size: |
410 KB |
First Published: |
2018-08-20 11:08:56 (6 years ago) |
Latest Published: |
2018-08-20 11:09:20 (6 years ago) |
Status: |
Trojan.Dropper (on last analysis) |
|
Analysis Date: |
2018-08-20 11:09:20 (6 years ago) |
%desktop% |
%sysdrive%\$recycle.bin |
Dork Tarayıcı-cleaned.exe |
$RNFRYWG.exe |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000d60e |
MVID: |
3c4d495a-9a4f-41de-a31a-3deee97cb749 |
Typelib ID: |
17dbf9f5-7e15-46ac-b4cc-a52a3d9cd807 |
Name |
Size of data |
MD5 |
.text |
47104 |
be9c016006dd9e3519dbf5412d2c6ada |
.rsrc |
372224 |
ead823f21045b7f69abaf83524046f7c |
.reloc |
512 |
ab551b2eac845003dd72cc538ad91758 |