How to remove $RRDPLOZ.dll
- File Details
- Overview
- Analysis
$RRDPLOZ.dll
The module $RRDPLOZ.dll has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
dab4646806dfca6d0e0b4d80fa9209d6 |
Size: |
1 MB |
First Published: |
2017-05-21 08:10:11 (8 years ago) |
Latest Published: |
2021-05-05 20:14:47 (4 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2021-05-05 20:14:47 (4 years ago) |
Overview
%desktop%\rms - viewer 6.5.0.8 [reverse] (cyber industries) |
%programfiles%\install |
%programfiles%\utorent |
%sysdrive%\$recycle.bin\s-1-5-21-3118798610-2729874070-2900721389-1000 |
%commonappdata%\windowsvolume |
%programfiles%\instal |
%sysdrive%\windows.old\users\ренат\desktop\rms - viewer 6.5.0.8 [reverse] (cyber industries) |
%commonappdata%\windowswork |
%desktop%\rdp\vnc scanner gui v 1.2\h_serv 18.12.16\файлы сервера |
%desktop%\rdp\vnc scanner gui v 1.2\h_serv 18.12.16\viewer |
vp8encoder.dll |
$RRDPLOZ.dll |
$RLIHU91.dll |
rn9dtq2nys.dll |
Russia |
60.8% |
|
Ukraine |
10.5% |
|
Germany |
7.0% |
|
Algeria |
2.7% |
|
Kazakhstan |
1.9% |
|
Belarus |
1.9% |
|
France |
1.6% |
|
Thailand |
1.3% |
|
Colombia |
1.3% |
|
Moldova |
1.3% |
|
Brazil |
0.8% |
|
United Kingdom |
0.8% |
|
Taiwan |
0.8% |
|
Poland |
0.8% |
|
Czech Republic |
0.5% |
|
Kyrgyzstan |
0.5% |
|
Italy |
0.3% |
|
Slovakia |
0.3% |
|
Qatar |
0.3% |
|
Croatia |
0.3% |
|
Turkey |
0.3% |
|
Bulgaria |
0.3% |
|
Iran |
0.3% |
|
Lithuania |
0.3% |
|
Guatemala |
0.3% |
|
Israel |
0.3% |
|
Latvia |
0.3% |
|
Romania |
0.3% |
|
Armenia |
0.3% |
|
Lebanon |
0.3% |
|
Belgium |
0.3% |
|
Estonia |
0.3% |
|
Azerbaijan |
0.3% |
|
Turkmenistan |
0.3% |
|
Bolivia |
0.3% |
|
India |
0.3% |
|
Windows 10 |
61.9% |
|
Windows 7 |
31.4% |
|
Windows 8.1 |
5.9% |
|
Windows 8 |
0.5% |
|
Windows Server 2012 |
0.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00132ab8 |
Name |
Size of data |
MD5 |
.text |
1375232 |
37cbbeda78e9602886e355497f382f8c |
.rdata |
195584 |
b2da65a9d132d26b27ad0448e9b4870b |
.data |
8704 |
fdf7059ed0d67b57eb539e2aec29db78 |
.rodata |
4608 |
14c840e82cb761116d94f9ab3878df6c |
.rsrc |
14336 |
6cf899016563137c91ecfbb17955547e |
.reloc |
33792 |
82eddaf85a948ad6e43baf6b07b625db |