How to remove $RCAQ7VN.exe
- File Details
- Overview
- Analysis
$RCAQ7VN.exe
The module $RCAQ7VN.exe has been detected as Trojan.Zpevdo
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
8f02a93beadf536f5bac99f1f89aaee8 |
| Size: |
281 KB |
| First Published: |
2017-10-12 07:08:26 (8 years ago) |
| Latest Published: |
2024-04-13 23:01:18 (2 years ago) |
| Status: |
Trojan.Zpevdo (on last analysis) |
|
| Analysis Date: |
2024-04-13 23:01:18 (2 years ago) |
| %sysdrive%\компьютер\белофф |
| %sysdrive%\проги\белофф |
| %sysdrive%\game\образы\beloff_2018.5 |
| %sysdrive%\программы\beloff_2017.8 |
| %desktop%\проги\beloff_2017.5 |
| %sysdrive%\$recycle.bin |
| %sysdrive%\beloff 2018-8.1 |
| %temp%\rar$exa4216.48052 |
| %sysdrive%\02-программы для установки на комп\02-драйвера и программы\beloff 2o18.9 minstall vs wpi (2018) pc |
| %sysdrive%\загрузки |
| P.Razblocker.exe |
| $RCAQ7VN.exe |
|
55.8% |
|
|
11.6% |
|
|
11.6% |
|
|
7.0% |
|
|
4.7% |
|
|
4.7% |
|
|
2.3% |
|
|
2.3% |
|
| Windows 10 |
46.5% |
|
| Windows 7 |
41.9% |
|
| Windows 8.1 |
11.6% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000193af |
| Name |
Size of data |
MD5 |
| .text |
101888 |
c624ae421a6c4f702f7f2c2c23c4aef1 |
| .rdata |
16384 |
746f7c2df0aa9b117542dd3e6429f2f1 |
| .data |
2048 |
07f7ba027ce50640e9ee99eddca1959f |
| .rsrc |
17408 |
5a47df913ab6bf55780089bcf46d0f50 |