How to remove $ROK63X2.exe
- File Details
- Overview
- Analysis
$ROK63X2.exe
The module $ROK63X2.exe has been detected as General Threat
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
0af629a6b47fccd7d37e4ce80e3155d3 |
| Size: |
9 MB |
| First Published: |
2020-05-10 22:40:55 (5 years ago) |
| Latest Published: |
2023-07-30 23:30:39 (2 years ago) |
| Status: |
General Threat (on last analysis) |
|
| Analysis Date: |
2023-07-30 23:30:39 (2 years ago) |
Overview
| %sysdrive%\$recycle.bin |
| %sysdrive% |
| %profile% |
| %profile% |
| %profile% |
| %desktop%\grabador de pantalla- ocam by ender isaak |
| %profile%\downloads |
| %profile% |
| %temp%\is-4nib0.tmp |
| %temp%\is-4nib0.tmp |
|
26.7% |
|
|
20.0% |
|
|
13.3% |
|
|
13.3% |
|
|
13.3% |
|
|
6.7% |
|
|
6.7% |
|
| Windows 10 |
73.3% |
|
| Windows 7 |
26.7% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000a7ed0 |
| Name |
Size of data |
MD5 |
| .text |
676352 |
d2d65fadb7b1be676e1248ab404382da |
| .itext |
6144 |
73e002411a8e0d309143a3e055e89568 |
| .data |
14336 |
43e7b93b56ed2b1f2c341832da76e1f0 |
| .bss |
0 |
00000000000000000000000000000000 |
| .idata |
4096 |
daddecfdccd86a491d85012d9e547c63 |
| .didata |
512 |
be0581a07bd7d21a29f93f8752d3e826 |
| .edata |
512 |
57cd71ca96fdc064696777e5b35cf0bb |
| .tls |
0 |
00000000000000000000000000000000 |
| .rdata |
512 |
967e84eb6ac477621cd1643650d7bc91 |
| .rsrc |
113152 |
4571eb7a1a4c31ec7e8028d3a4364c3a |