How to remove $RSC1PSG.exe
- File Details
- Overview
- Analysis
$RSC1PSG.exe
The module $RSC1PSG.exe has been detected as PUP.Reimage
File Details
Product Name: |
|
Company Name: |
|
MD5: |
7e19d6e2505a018d1e4adad32702c4ee |
Size: |
8 MB |
First Published: |
2017-09-14 02:08:59 (6 years ago) |
Latest Published: |
2020-06-30 14:05:28 (3 years ago) |
Status: |
PUP.Reimage (on last analysis) |
|
Analysis Date: |
2020-06-30 14:05:28 (3 years ago) |
Overview
%programfiles%\reimage\reimage protector |
%sysdrive%\$recycle.bin\s-1-5-21-2945422090-795710468-984463480-1000 |
%sysdrive%\windows.old\program files\reimage\reimage protector |
%appdata%\zhp\quarantine\reimage\reimage protector |
%sysdrive%\adwcleaner\quarantine\rqf69azbla\reimage protector |
%sysdrive%\adwcleaner\quarantine\exuieaoeii\reimage protector |
%sysdrive%\adwcleaner\quarantine\bbsqwy6yhk\reimage protector |
%sysdrive%\adwcleaner\quarantine\gxix4a2dre\reimage protector |
%sysdrive%\adwcleaner\quarantine\x3cf3ednhm\reimage protector |
%sysdrive%\boxroot\harddiskvolume2\program files\reimage\reimage protector |
ReiScanner.exe |
$RSC1PSG.exe |
|
18.2% |
|
|
12.0% |
|
|
10.2% |
|
|
6.0% |
|
|
5.5% |
|
|
4.2% |
|
|
3.0% |
|
|
2.8% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
2.5% |
|
|
1.6% |
|
|
1.5% |
|
|
1.3% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.1% |
|
|
0.9% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 10 |
49.5% |
|
Windows 7 |
27.5% |
|
Windows 8 |
12.9% |
|
Windows 8.1 |
9.2% |
|
Windows Vista |
0.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0047a100 |
Name |
Size of data |
MD5 |
.text |
5341696 |
178da181bfde91ac81df2f7e03c60461 |
.rdata |
2572288 |
a5510f4a34322eac47ed70e28ad681dd |
.data |
405504 |
6499c6f6fe4b7f8cc9df58cece49f8a8 |
.pdata |
210432 |
50705a5f7b636fb810c79ad8ad46c0d3 |
text |
5120 |
c1d8ad86a26dcd18db7052c9f9f43df4 |
data |
5120 |
709856458e73182f47466ff0d84babad |
.rsrc |
51200 |
cf081601c8ee37cb043409cef654ec6f |
.reloc |
116736 |
a17a46e01f82a598321b95ba6d630c31 |