How to remove rvlkl.exe.vir
- File Details
- Overview
- Analysis
rvlkl.exe.vir
The module rvlkl.exe.vir has been detected as PUP.Keylogger
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2ac47d764005306bdbb4becd7e4c492f |
Size: |
408 KB |
First Published: |
2017-05-24 13:07:30 (7 years ago) |
Latest Published: |
2021-08-02 20:08:20 (3 years ago) |
Status: |
PUP.Keylogger (on last analysis) |
|
Analysis Date: |
2021-08-02 20:08:20 (3 years ago) |
Overview
%commonappdata%\rvlkl |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
%commonappdata% |
|
30.0% |
|
|
16.7% |
|
|
10.0% |
|
|
6.7% |
|
|
6.7% |
|
|
6.7% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
|
3.3% |
|
Windows 7 |
53.3% |
|
Windows 10 |
40.0% |
|
Windows 8.1 |
6.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00020cfc |
Name |
Size of data |
MD5 |
.text |
178176 |
8e01680cbe0065d0545968ea28c99bdd |
.rdata |
42496 |
22e42439ebdb9ddc8153d97ac884833a |
.data |
6144 |
aedb7e89484b2031f78072d8e8dffcf0 |
.pdata |
8192 |
4ea0c2e2a310de7342e308c93ddd6cc8 |
.rsrc |
174080 |
dd3343113d8c7a47c7a51ae4ba231eb6 |
.reloc |
2048 |
faec079d67002bb2f0050225a3b0fc75 |