How to remove RtkNGUI64.exe
- File Details
- Overview
- Analysis
RtkNGUI64.exe
The module RtkNGUI64.exe has been detected as Possible Threat
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
61da064d8eb54c1b9010761bdeab74ce |
| Size: |
13 MB |
| First Published: |
2021-01-10 05:51:41 (4 years ago) |
| Latest Published: |
2021-01-10 07:04:47 (4 years ago) |
| Status: |
Possible Threat (on last analysis) |
|
| Analysis Date: |
2021-01-10 07:04:47 (4 years ago) |
| %localappdata%\common softwares\appx5ypmf196y6btc73dmc5dca27wpzdcxvp\cddbuicontrol.cddbinfowindow2 |
| %localappdata%\common softwares\appx5ypmf196y6btc73dmc5dca27wpzdcxvp\cddbuicontrol.cddbinfowindow2 |
| %localappdata%\common softwares\appx5ypmf196y6btc73dmc5dca27wpzdcxvp\cddbuicontrol.cddbinfowindow2 |
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00a31229 |
| Name |
Size of data |
MD5 |
| .text |
3236352 |
ec126a1e98e5823a496de6a32f40e865 |
| .rdata |
1209344 |
2b21c78f0f8ca14b14d0a9073dcc2a01 |
| .data |
70656 |
5c7cd0d774cb5ccb3a329b14b642c97c |
| .pdata |
130560 |
b21ec1f4611051f3b9125dc7179880aa |
| _RANDOMX |
3072 |
2d064068efaf1cce84dfd050ac9137d1 |
| _SHA3_25 |
2560 |
c14f9aad5e95192cd7523ba6675549fd |
| _TEXT_CN |
6656 |
6a7f77e47f77f65bef85036ae5a71106 |
| _TEXT_CN |
4608 |
409bf3f918f2402291cb56c2e9354b47 |
| _RDATA |
512 |
1654fc4b50cf16be4d4a44f11f75cee6 |
| .rsrc |
2835456 |
96e4e85274106d3835c0296afaaf0cfc |
| .reloc |
34816 |
d5e7c4f8b185933c2b3f3020dafe29e0 |
| .idata |
1024 |
09aa3316902e8bc3693dd486f11dd0bf |
| .tls |
512 |
23670a24e7e3e531f5cce1b611f9aede |
| .themida |
6348800 |
a751a9f046f08be514ae5741c45dea04 |
| .reloc |
16 |
5f6b85e0d53afcb04a4977326fd4cca2 |