How to remove $RTOMS91.exe
- File Details
- Overview
- Analysis
$RTOMS91.exe
The module $RTOMS91.exe has been detected as Adware.Downloader
File Details
Product Name: |
|
MD5: |
0552b8e1f9e26fded1223fe9a185e3ae |
Size: |
835 KB |
First Published: |
2017-06-07 13:04:41 (7 years ago) |
Latest Published: |
2018-03-26 23:06:57 (6 years ago) |
Status: |
Adware.Downloader (on last analysis) |
|
Analysis Date: |
2018-03-26 23:06:57 (6 years ago) |
Overview
%localappdata%\temp |
%sysdrive%\$recycle.bin\s-1-5-21-1290097628-2106574340-442846761-1001 |
%localappdata% |
%temp% |
WeatherTool_marketator01.exe |
$RTOMS91.exe |
Windows 10 |
54.2% |
|
Windows 7 |
45.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000543ca |
Name |
Size of data |
MD5 |
.text |
501760 |
0c544a302ffc90c25871940e31d8a80c |
.rdata |
66560 |
bc4b5c6d40a3d120ac846720897b6f4e |
.data |
8192 |
175604b273f48fc79048c905288470fd |
.rsrc |
245248 |
98d4a426935759e05f6579aecf79da67 |
.reloc |
27136 |
65ab5cff0641c09d4d2dd6b0110139bc |