How to remove ROMServer.exe
- File Details
- Overview
- Analysis
ROMServer.exe
The module ROMServer.exe has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
MD5: |
36de07fb5eba507d688fbc4b27e683d0 |
Size: |
6 MB |
First Published: |
2018-05-21 19:10:26 (6 years ago) |
Latest Published: |
2020-09-23 21:53:15 (4 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2020-09-23 21:53:15 (4 years ago) |
Overview
%programfiles% |
%programfiles%\litemanager pro - viewer |
%windir% |
%sysdrive%\utilities program |
%profile%\downloads2 |
%profile% |
%programfiles%\litemanager pro - viewer |
%programfiles%\litemanager pro - viewer |
%sysdrive%\program\lm |
%programfiles% |
|
40.2% |
|
|
9.2% |
|
|
8.0% |
|
|
5.7% |
|
|
5.7% |
|
|
5.7% |
|
|
3.4% |
|
|
3.4% |
|
|
3.4% |
|
|
2.3% |
|
|
2.3% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
Windows 10 |
60.9% |
|
Windows 7 |
27.6% |
|
Windows 8 |
4.6% |
|
Windows XP |
3.4% |
|
Windows Vista |
2.3% |
|
Windows 8.1 |
1.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x004c0e54 |
Name |
Size of data |
MD5 |
.text |
4965888 |
1a45ae3fd2c889c649c645d4fa65c468 |
.itext |
12288 |
03c26f274d9b9f465e1f90c4937dde11 |
.data |
80384 |
966bfccff964124b7079b290fe4e8274 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
19456 |
d9384c1558e97581b77d3a2840b61e9d |
.didata |
3072 |
afcb7a1ec1f06fc0bbbe07852f0cade4 |
.edata |
512 |
aadc9a7e1667671c8cf14c4b8d14e310 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
512 |
2eb84ccdb17e393557f3b30d28a60be7 |
.reloc |
420864 |
467b87dd5f3dc2cb2e2bcffc06f2ad62 |
.rsrc |
964096 |
ff353f5204a404f74a0b2409130363b1 |