How to remove RtkNGUI64.exe
- File Details
- Overview
- Analysis
RtkNGUI64.exe
The module RtkNGUI64.exe has been detected as Possible Threat
File Details
Product Name: |
|
Company Name: |
|
MD5: |
61da064d8eb54c1b9010761bdeab74ce |
Size: |
13 MB |
First Published: |
2021-01-10 05:51:41 (4 years ago) |
Latest Published: |
2021-01-10 07:04:47 (4 years ago) |
Status: |
Possible Threat (on last analysis) |
|
Analysis Date: |
2021-01-10 07:04:47 (4 years ago) |
%localappdata%\common softwares\appx5ypmf196y6btc73dmc5dca27wpzdcxvp\cddbuicontrol.cddbinfowindow2 |
%localappdata%\common softwares\appx5ypmf196y6btc73dmc5dca27wpzdcxvp\cddbuicontrol.cddbinfowindow2 |
%localappdata%\common softwares\appx5ypmf196y6btc73dmc5dca27wpzdcxvp\cddbuicontrol.cddbinfowindow2 |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00a31229 |
Name |
Size of data |
MD5 |
.text |
3236352 |
ec126a1e98e5823a496de6a32f40e865 |
.rdata |
1209344 |
2b21c78f0f8ca14b14d0a9073dcc2a01 |
.data |
70656 |
5c7cd0d774cb5ccb3a329b14b642c97c |
.pdata |
130560 |
b21ec1f4611051f3b9125dc7179880aa |
_RANDOMX |
3072 |
2d064068efaf1cce84dfd050ac9137d1 |
_SHA3_25 |
2560 |
c14f9aad5e95192cd7523ba6675549fd |
_TEXT_CN |
6656 |
6a7f77e47f77f65bef85036ae5a71106 |
_TEXT_CN |
4608 |
409bf3f918f2402291cb56c2e9354b47 |
_RDATA |
512 |
1654fc4b50cf16be4d4a44f11f75cee6 |
.rsrc |
2835456 |
96e4e85274106d3835c0296afaaf0cfc |
.reloc |
34816 |
d5e7c4f8b185933c2b3f3020dafe29e0 |
.idata |
1024 |
09aa3316902e8bc3693dd486f11dd0bf |
.tls |
512 |
23670a24e7e3e531f5cce1b611f9aede |
.themida |
6348800 |
a751a9f046f08be514ae5741c45dea04 |
.reloc |
16 |
5f6b85e0d53afcb04a4977326fd4cca2 |