How to remove $ROGKK6O.exe
- File Details
- Overview
- Analysis
$ROGKK6O.exe
The module $ROGKK6O.exe has been detected as Trojan.Agent
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
455ef1bd88b488f92257bde68f689336 |
| Size: |
588 KB |
| First Published: |
2017-11-09 18:03:27 (8 years ago) |
| Latest Published: |
2025-07-19 23:01:17 (4 months ago) |
| Status: |
Trojan.Agent (on last analysis) |
|
| Analysis Date: |
2025-07-19 23:01:17 (4 months ago) |
| %mydoc%\progamlar\daemon.tools.ultra.5.2.0.0644.rar |
| %programfiles%\daemon tools ultra |
| %sysdrive%\$recycle.bin\s-1-5-21-3015829000-2681869357-405343579-1001\$rqct0zn.0644\daemon.tools.ultra.5.2.0.0644 |
| %programfiles% |
| %sysdrive%\programlar\dtu.5.2.0.0644.wt.rar\dtu.5.2.0.0644.wt |
| %sysdrive%\programlar\deamon tools.u.5.2.0.0644.wt.rar\dtu.5.2.0.0644.wt |
| %sysdrive% |
| %profile%\downloads\_getintopc.com_daemon_tools_ultra_5.2.0.0644\daemon_tools_ultra_5.2.0.0644 |
| %sysdrive%\скаченное\daemon tools ultra v5.2.0.0644 final ml_rus |
| %profile%\downloads |
| RegGen.exe |
| $ROGKK6O.exe |
| reggen.exe |
| Keygen.exe |
| RegGen.bak |
| $R7NUBMH.exe.quarantined |
| RegGen.exe.quarantined |
| PARCHE.exe |
| setup.exe |
|
17.9% |
|
|
8.6% |
|
|
7.8% |
|
|
7.4% |
|
|
5.6% |
|
|
5.4% |
|
|
4.7% |
|
|
3.9% |
|
|
3.2% |
|
|
2.7% |
|
|
2.7% |
|
|
2.2% |
|
|
2.2% |
|
|
2.0% |
|
|
1.5% |
|
|
1.5% |
|
|
1.2% |
|
|
1.2% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
| Windows 10 |
69.2% |
|
| Windows 7 |
24.2% |
|
| Windows 8.1 |
5.3% |
|
| Windows 8 |
0.7% |
|
| Windows Embedded Standard |
0.2% |
|
| Windows Server 2008 R2 |
0.2% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x001b4a40 |
| Name |
Size of data |
MD5 |
| .text |
0 |
00000000000000000000000000000000 |
| .data |
591360 |
397bacfe09862d141a438c5d01ec77ad |
| .idata |
10240 |
54cb5f6d7f6be02b8d5f66262f738b5f |