How to remove r_server.exe
- File Details
- Overview
- Analysis
r_server.exe
The module r_server.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
MD5: |
7a67446b8c0d917d540af1088b3c8c17 |
Size: |
692 KB |
First Published: |
2017-07-29 17:09:47 (7 years ago) |
Latest Published: |
2024-07-14 23:01:28 (6 months ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2024-07-14 23:01:28 (6 months ago) |
%windir%\system32 |
%programfiles%\radmin |
%programfiles% |
%sysdrive%\학업\usb\정보보안엔지니어링\보안개론\유틸 |
%programfiles%\parche 1 x pst\autoplay\teu apport\control remoto |
%programfiles% |
%system% |
%system% |
|
36.4% |
|
|
18.2% |
|
|
18.2% |
|
|
9.1% |
|
|
9.1% |
|
|
9.1% |
|
Windows XP |
36.4% |
|
Windows 10 |
36.4% |
|
Windows 7 |
27.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x01400000 |
Entry Address: |
0x00006fdb |
Name |
Size of data |
MD5 |
.text |
40960 |
7bd2e1f0c3781c445205daaf9a86c533 |
.rdata |
20480 |
5ffa7057ef7fc096f5827a690cf6881c |
.data |
12288 |
20e19843b9ab35ecd8e0e0766b56ee5a |
.rsrc |
630784 |
77e5cc614d3fa3999559a9d004095a3d |