How to remove $RSEX8ZA.exe

$RSEX8ZA.exe

The module $RSEX8ZA.exe has been detected as Trojan.Downloader

$RSEX8ZA.exe
Product Name:

Privacy Eraser Free

Company Name:

Cybertron Software Co., Ltd.

MD5: a0eb6735f355405ad1e56efb5e4214c2
Size: 7 MB
First Published: 2025-12-16 23:42:28 (2 days ago)
Latest Published: 2025-12-16 23:42:51 (2 days ago)
Status: Trojan.Downloader (on last analysis)
Analysis Date: 2025-12-16 23:42:51 (2 days ago)
Signed By: Cybertron Software Co., Ltd.
Status: Valid
%sysdrive%\$recycle.bin
%localappdata%\microsoft\edge\user data\default\cache
%profile%
%localappdata%\microsoft\edge\user data\default\cache
%sysdrive%\$recycle.bin
%sysdrive%\$recycle.bin
%profile%
%sysdrive%\$recycle.bin
%sysdrive%\$recycle.bin
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000a83bc

PE Sections:

Name Size of data MD5
.text 677888 b889d302f6fc48a904de33d8d947ae80
.itext 7168 588dd0a8ab499300d3701cbd11b017d9
.data 14848 5c0c76e77aef52ebc6702430837ccb6e
.bss 0 d41d8cd98f00b204e9800998ecf8427e
.idata 4096 627340dff539ef99048969aa4824fb2d
.didata 512 fd11c1109737963cc6cb7258063abfd6
.edata 512 7de8ca0c7a61668a728fd3a88dc0942d
.tls 0 d41d8cd98f00b204e9800998ecf8427e
.rdata 512 d84006640084dc9f74a07c2ff9c7d656
.reloc 69632 a85fda2741bd9417695daa5fc5a9d7a5
.rsrc 69632 f205218f1e7166f58be8ee9297ba4f2f

More information:

Download GridinSoft Anti-Malware - Removal tool for $RSEX8ZA.exe