How to remove $ROKG43J.exe
- File Details
- Overview
- Analysis
$ROKG43J.exe
The module $ROKG43J.exe has been detected as PUP.Uniblue
File Details
Product Name: |
|
Company Name: |
|
MD5: |
28a207c0aa3c7da5df990d7045d7c30c |
Size: |
27 KB |
First Published: |
2018-04-28 11:03:50 (7 years ago) |
Latest Published: |
2019-03-23 06:20:59 (6 years ago) |
Status: |
PUP.Uniblue (on last analysis) |
|
Analysis Date: |
2019-03-23 06:20:59 (6 years ago) |
Overview
%programfiles%\uniblue |
%sysdrive%\$recycle.bin |
%sysdrive%\system volume information\_restore{83e48203-8dcb-4590-9fdc-e02aa294970a} |
%sysdrive%\adwcleaner\quarantine\x3cf3ednhm |
%appdata%\zhp\quarantine\uniblue.dir |
%programfiles%\uniblue |
dsnotifier.exe |
$ROKG43J.exe |
A0036232.exe |
|
37.8% |
|
|
6.7% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
4.4% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
|
2.2% |
|
Windows 10 |
45.7% |
|
Windows 7 |
39.1% |
|
Windows 8.1 |
10.9% |
|
Windows XP |
4.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00002c61 |
Name |
Size of data |
MD5 |
.text |
8704 |
ab7fd1103df6d4ec0a82f79204213e42 |
.rdata |
2560 |
0c8b0c00f391932a8e0e81df99214288 |
.data |
3072 |
13556f9e9adc6120e7002ab81a0d5503 |
.rsrc |
6144 |
0ca6c5685a0158af95c91222775e3822 |