How to remove $ROM12JZ.exe
- File Details
- Overview
- Analysis
$ROM12JZ.exe
The module $ROM12JZ.exe has been detected as Adware.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
225f19aba9ab2b1acb28961bd286367e |
Size: |
6 MB |
First Published: |
2018-04-30 09:16:22 (6 years ago) |
Latest Published: |
2019-03-06 01:37:38 (5 years ago) |
Status: |
Adware.Gen (on last analysis) |
|
Analysis Date: |
2019-03-06 01:37:38 (5 years ago) |
Overview
%sysdrive%\проги\winaso |
%programfiles%\winaso |
%sysdrive% |
%sysdrive%\$recycle.bin |
%programfiles%\winaso |
%programfiles%\winaso |
%temp%\rar$exa6004.20203\winaso registry optimizer 5.0.1.0 免安裝 |
|
30.0% |
|
|
20.0% |
|
|
20.0% |
|
|
10.0% |
|
|
10.0% |
|
|
10.0% |
|
Windows 7 |
70.0% |
|
Windows 10 |
30.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0021a4c8 |
Name |
Size of data |
MD5 |
.text |
2194432 |
0b4779b45fdf26d9783fbd8ac6f31fc9 |
.itext |
6656 |
b6b64f0e7c18ed70ec5c7c5121a9ebff |
.data |
37376 |
6c07c5a51186ff7545b918a5ea62dbf0 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
18432 |
069584c4c5e7546c4a1652a23a434d42 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
b9775f7d4ac233af34918c99bb68c2c4 |
.reloc |
119296 |
f498aa9f93a3fbd16bbf9ef85664c6f9 |
.rsrc |
4582400 |
90ad4845a7154d6c9acc27bc27a0785e |