How to remove $ROK63X2.exe
- File Details
- Overview
- Analysis
$ROK63X2.exe
The module $ROK63X2.exe has been detected as General Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
0af629a6b47fccd7d37e4ce80e3155d3 |
Size: |
9 MB |
First Published: |
2020-05-10 22:40:55 (5 years ago) |
Latest Published: |
2023-07-30 23:30:39 (2 years ago) |
Status: |
General Threat (on last analysis) |
|
Analysis Date: |
2023-07-30 23:30:39 (2 years ago) |
Overview
%sysdrive%\$recycle.bin |
%sysdrive% |
%profile% |
%profile% |
%profile% |
%desktop%\grabador de pantalla- ocam by ender isaak |
%profile%\downloads |
%profile% |
%temp%\is-4nib0.tmp |
%temp%\is-4nib0.tmp |
|
26.7% |
|
|
20.0% |
|
|
13.3% |
|
|
13.3% |
|
|
13.3% |
|
|
6.7% |
|
|
6.7% |
|
Windows 10 |
73.3% |
|
Windows 7 |
26.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000a7ed0 |
Name |
Size of data |
MD5 |
.text |
676352 |
d2d65fadb7b1be676e1248ab404382da |
.itext |
6144 |
73e002411a8e0d309143a3e055e89568 |
.data |
14336 |
43e7b93b56ed2b1f2c341832da76e1f0 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
4096 |
daddecfdccd86a491d85012d9e547c63 |
.didata |
512 |
be0581a07bd7d21a29f93f8752d3e826 |
.edata |
512 |
57cd71ca96fdc064696777e5b35cf0bb |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
967e84eb6ac477621cd1643650d7bc91 |
.rsrc |
113152 |
4571eb7a1a4c31ec7e8028d3a4364c3a |