How to remove $RSJ3TY4.dll
- File Details
- Overview
- Analysis
$RSJ3TY4.dll
The module $RSJ3TY4.dll has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
232096c6e924797e9b1f1b6164f0df34 |
Size: |
115 KB |
First Published: |
2017-08-14 13:14:21 (7 years ago) |
Latest Published: |
2018-09-20 00:08:22 (6 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2018-09-20 00:08:22 (6 years ago) |
Overview
%programfiles%\ultravnc |
%sysdrive%\ubcd4win\plugin\network\ultravnc\files |
%sysdrive%\$recycle.bin\s-1-5-21-2087035277-3798034300-3097854789-1002 |
%sysdrive%\ubcd4win\plugin\network\ultravnc |
%desktop%\backup\recovered data 09-13-2016 at 11_22_46\ntfs 0\ubcd4win1\plugin\network\ultravnc |
%desktop%\backup\recovered data 09-12-2016 at 22_05_51\ntfs 0\ubcd4win1\plugin\network\ultravnc |
%desktop%\backup\recovered data 09-13-2016 at 11_22_46\ntfs 0\ubcd4win\plugin\network\ultravnc |
%desktop%\backup\recovered data 09-12-2016 at 22_05_51\ntfs 0\ubcd4win\plugin\network\ultravnc |
%programfiles% |
%commonappdata%\cadent\alignsupport |
authadmin.dll |
$RSJ3TY4.dll |
|
47.6% |
|
|
19.0% |
|
|
9.5% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
|
4.8% |
|
Windows 10 |
61.9% |
|
Windows 7 |
33.3% |
|
Windows 8 |
4.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00001972 |
Name |
Size of data |
MD5 |
.text |
90112 |
df0fde60e6d71bb6573587b394dc75ca |
.rdata |
11776 |
f24565404e80cde99a7149211e75dc9c |
.data |
4096 |
e131162ab0e56f29c60738c7d73ed36e |
.rsrc |
1536 |
939ad81476652aeadb104bdb6aa89363 |
.reloc |
4096 |
d6919e6133d8ea058af7a6c8097909f3 |