How to remove $RTYVEJR.exe
- File Details
- Overview
- Analysis
$RTYVEJR.exe
The module $RTYVEJR.exe has been detected as Adware.Shopper
File Details
MD5: |
0544cb178bccf7580efccb14376a89fe |
Size: |
45 KB |
First Published: |
2017-05-21 03:02:03 (7 years ago) |
Latest Published: |
2018-08-15 14:31:16 (6 years ago) |
Status: |
Adware.Shopper (on last analysis) |
|
Analysis Date: |
2018-08-15 14:31:16 (6 years ago) |
%localappdata%\temp |
%sysdrive%\docume~1\admini~1\locals~1\temp |
%sysdrive%\$recycle.bin\s-1-5-21-969143805-4257010552-1927920317-1001 |
%temp% |
%profile%\rdant\local settings |
%sysdrive%\$recycle.bin |
%mydoc%\nc4010\documents and settings\essaie\local settings |
tu17p84.exe |
$RTYVEJR.exe |
$RYA467Q.exe |
$RJHIDKG.exe |
|
44.6% |
|
|
5.4% |
|
|
4.6% |
|
|
4.6% |
|
|
4.6% |
|
|
3.8% |
|
|
3.1% |
|
|
3.1% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
Windows 7 |
48.5% |
|
Windows 10 |
41.5% |
|
Windows 8.1 |
5.4% |
|
Windows 8 |
3.1% |
|
Windows XP |
1.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000321a |
Name |
Size of data |
MD5 |
.text |
24064 |
270d69d171608bde2573f7a74e059e9f |
.rdata |
4608 |
5801d712ecba58aa87d1e7d1aa24f3aa |
.data |
1024 |
a95e38f81451ed09269269cbf15c332b |
.ndata |
0 |
00000000000000000000000000000000 |
.rsrc |
3072 |
f2056989d10ff6bf6de9dce14fad73ee |