How to remove $RNSRUCR.exe

$RNSRUCR.exe

The module $RNSRUCR.exe has been detected as Trojan.AI

$RNSRUCR.exe
Product Name:

Sysinternals Rootkitrevealer

Company Name:

Sysinternals - www.sysinternals.com

MD5: 3897cfbb2a1fa12a0505e7916496eb47
Size: 232 KB
First Published: 2017-06-15 19:07:32 (7 years ago)
Latest Published: 2024-12-29 23:01:15 (a month ago)
Status: Trojan.AI (on last analysis)
Analysis Date: 2024-12-29 23:01:15 (a month ago)
%mydoc%\sauvegarde\archives\jf\my received files\soft\maintenance-pc\rootkitrevealer
%sysdrive%\install\aaa\zabezpečená xp
%sysdrive%\$recycle.bin
%sysdrive%\0 escritorio real\copia de dell empresa\users\dell\desktop\darty\admin_v3
%sysdrive%\0 escritorio real\copia de dell empresa\users\dell\desktop\admin_v3
%desktop%\old files and thumdrives\other pc's\desktop\tool links\tools for cts
%desktop%\old files and thumdrives\old thumb drive\steve\tools-old
%desktop%\old files and thumdrives\other pc's\desktop\jump sticks\blue drive
%desktop%\old files and thumdrives\other pc's\desktop\jump sticks\red jump stick\tools
%temp%
RootkitRevealer.exe
$RNSRUCR.exe
ROOTKITR.EXE
25.0%
17.9%
17.9%
10.7%
7.1%
7.1%
7.1%
7.1%
Windows 10 53.6%
Windows 7 46.4%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00016ef3

PE Sections:

Name Size of data MD5
.text 151552 cbd3d5d3d0e0b0364816563002de6ac9
.rdata 16384 a38f3c05151dc33781191bcd9bae79c7
.data 24576 f408bf0507dbaf74913b11ea3beffacd
.rsrc 28672 6fd5fcca16d5d1634f0c8c4b068aded7
.reloc 12288 569e9c66f23773474e7d13714b130acc

More information:

Download GridinSoft Anti-Malware - Removal tool for $RNSRUCR.exe