If you did not intentionally download this file, or if your antivirus flags it as severe, you should remove it immediately.
$cert = Get-ChildItem -Path Cert:\LocalMachine\My | Where-Object $_.Subject -like "*rdg.company.com*" Test-Certificate -Cert $cert -Policy SSL -User r2rcertest.exe
| Check | Legitimate r2rcertest.exe | Suspicious / Malware | | :--- | :--- | :--- | | | C:\Windows\System32\ | C:\Users\*\AppData\ , C:\Temp\ , C:\ProgramData\ | | File Size | ~60 KB – 120 KB (depends on Windows version) | Varies wildly (often <50 KB or >1 MB) | | Digital Signature | Microsoft Windows Publisher | No signature, or invalid signature | | CPU/Memory usage | 0% – 1% (transient, runs briefly) | Persistent high CPU or memory | | Description | "R2R Certificate Test" | Blank or generic description | If you did not intentionally download this file,
Steps to the certificate if it's causing issues 50 KB or >