RTO RESULTS.EXE
What you should do about RTO RESULTS.EXE:
The most common objects with the name of RTO RESULTS.EXE have yet to be classified as safe by our research department.
If you are concerned that your PC might be infected why not try our Free version of Prevx 3.0. It will thoroughly check your PC for millions of active Spyware and malware infections and takes less than 2 minutes. Don't take the risk, check your PC now.
What we know about RTO RESULTS.EXE:
RTO RESULTS.EXE
AUTOMATED MALWARE PROFILE, ANALYSIS, REMOVAL AND SIGNATURE INFORMATION:
DEFINITION OF: RTO RESULTS.EXE
- Safety Rating: Known Malware, do not run
- Malware Family: Part of Malware group - Covert Sys Exec
- Determination: Automatically determined using Prevx centralized heuristics
- Malware Form: EXPLOIT
- Protection: Prevx provides powerful security products that you can use to detect, remove and protect you from RTO RESULTS.EXE and safeguard your PC against viruses, trojans, worms, spyware, rootkits and adware
- Why risk having spyware on your PC when it takes less than 2 minutes to thoroughly check it with Prevx CSI? Click here to check your PC with Prevx CSI Now.
- First seen: Apr 19 2007 (GMT)
- Last seen: Apr 19 2007 (GMT)
- File Size: 239,905 bytes
1. COVERT ANALYSIS OF: RTO RESULTS.EXE
- File Names Used: 140
- Paths Used: 158
- Common File Name: RTO RESULTS.EXE
- Common Path: %WINDIR%\SYSTEM32\
- Vendor Information: No Vendor details specified
- RTO RESULTS.EXE may use 140 or more path and file names, these are the most common:
- 1 :%documents%\adamjee claim form\NEW FOLDER.EXE
- 2 :?:\ HANDWRITTEN DIGIT CLASSIFIC.....EXE
- 3 :?:\1inf\1INF.EXE
- 4 :?:\1inf\test\new folder\GHAD ALDAW.EXE
- 5 :?:\all transmittal\t-ud-mo-0076\T-UD-MO-0076.EXE
- 6 :?:\all transmittal\t-ud-mo-0099\T-UD-MO-0099.EXE
- 7 :?:\amjid\AMJID.EXE
- 8 :?:\cources\COURCES.EXE
- 9 :?:\mayad\ccsit page\ccsit...§Ù†ÙŠØ© علوم 06-07\نتيجة تانية علو.....EXE
- 10:?:\NEW FOLDER.EXE
- 11:?:\new folder\200802a2\200802A2.EXE
- 12:?:\new folder\analytics\marketing & business\MARKETING & BUSINESS.EXE
- 13:?:\NEW FOLDER\NEW FOLDER.EXE
- 14:?:\الدولية\الدولية.EXE
- 15:?:\pr project\k-d tree\K-D TREE.EXE
- File Name Structure: Normal
- File and Path Structure: Suspicious, unusually high number of file and path combinations
2. RELATIONSHIP ANALYSIS OF: RTO RESULTS.EXE
- Malicious Objects Created: 2 objects
- Malicious Creators: 1
- Malware Run Keys: None
- Self Persists:
- Antivirus Detection: No third party antivirus detection observed
- Anti-Spyware Detection: No third party anti-spyware detection observed
3. ACTIVITY ANALYSIS OF: RTO RESULTS.EXE
- The following behaviors have been observed for this object:
- Installs programs.
- Deletes programs.
- Invokes dll components.
- Creates Run Keys.
- Runs other programs.
- Communicates with web sites using httpout protocols.
- Terminates processes.
- Hijacks running processes.
- Has outbound communications.
- Creates known malware.
- Creates copies of itself.
4. PROPAGATION ANALYSIS OF: RTO RESULTS.EXE
- Malware Group Propagation Rate: Moderate (spreading)
- Malware Group: Covert Sys Exec
- Copyright Prevx Limited 2005, 2006
