What is RocketPC?
The Malwarebytes research team has determined that RocketPC is a "system optimizer". These so-called "system optimizers" use intentional false positives to convince users that their systems have problems. Then they try to sell you their software, claiming it will remove these problems.
More information can be found on our Malwarebytes Labs blog.
How do I know if I am infected with RocketPC?
This is how the main screen of the system optimizer looks:
You will find these icons in your taskbar, your startmenu, and on your desktop:
and see this warning during install:
and these screens during "operations":
You may see this entry in your list of installed programs:
and these tasks in your list of Scheduled Tasks:
How did RocketPC get on my computer?
These so-called system optimizers use different methods of getting installed. This particular one was downloaded from their website:
How do I remove RocketPC?
Our program Malwarebytes can detect and remove this potentially unwanted application.
- Please download Malwarebytes to your desktop.
- Double-click mb3-setup-consumer-{version}.exe and follow the prompts to install the program.
- Then click Finish.
- Once the program has fully updated, select Scan Now on the Dashboard. Or select the Threat Scan from the Scan menu.
- If another update of the definitions is available, it will be implemented before the rest of the scanning procedure.
- When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
- Restart your computer when prompted to do so.
- No, Malwarebytes removes RocketPC completely.
- This PUP creates some scheduled tasks. You can read here how to check for and, if necessary, remove Scheduled Tasks.
We hope our application and this guide have helped you eradicate this system optimizer.
As you can see below the full version of Malwarebytes would have protected you against the RocketPC installer. It would have warned you before the application could install itself, giving you a chance to stop it before it became too late.
Technical details for experts
You may see these entries in FRST logs:
(SOLVUSOFT CORPORATION -> Solvusoft) C:\Program Files (x86)\RocketPC\RocketPC.exe C:\Windows\System32\Tasks\RocketPC_pp3_1 C:\Windows\System32\Tasks\RocketPC_pp2_3 C:\Windows\System32\Tasks\RocketPC_pp2_2 C:\Windows\System32\Tasks\RocketPC_pp2_1 C:\Windows\System32\Tasks\RocketPC_pp1 C:\Windows\Tasks\RocketPC_pp2_3.job C:\Windows\Tasks\RocketPC_pp2_2.job C:\Windows\Tasks\RocketPC_pp2_1.job C:\Windows\Tasks\RocketPC_pp3_1.job C:\Windows\Tasks\RocketPC_pp1.job C:\Windows\System32\Tasks\RocketPC_period C:\Windows\System32\Tasks\PerfMonitor_once C:\Windows\System32\Tasks\PerfMonitor_strtp C:\Users\Public\Desktop\RocketPC.lnk C:\Windows\Tasks\PerfMonitor_strtp.job C:\Windows\Tasks\PerfMonitor_once.job C:\Windows\Tasks\RocketPC_period.job C:\Users\{username}\AppData\Roaming\RocketPC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketPC C:\Program Files (x86)\RocketPC (Solvusoft ) C:\Users\{username}\Desktop\Setup_RocketPC_2018.exe RocketPC (HKLM-x32\...\RocketPC_is1) (Version: 1.2.2.105 - Solvusoft) Task: {0A1BE82C-F975-4B2E-B0C6-B694A1230F1F} - System32\Tasks\RocketPC_pp3_1 => C:\Program Files (x86)\RocketPC\RPCEx.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {63A0E5ED-65DA-4937-90BE-F5F9285D7FA6} - System32\Tasks\PerfMonitor_strtp => C:\Program Files (x86)\RocketPC\PerformanceMonitor.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {67F4DAF2-9665-41F7-9D16-47CE57ABBF2B} - System32\Tasks\PerfMonitor_once => C:\Program Files (x86)\RocketPC\PerformanceMonitor.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {893F3C7D-5DC9-4410-88B2-4DAB24430909} - System32\Tasks\RocketPC_period => C:\Program Files (x86)\RocketPC\RocketPC.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {9694F7DB-2818-4D71-A386-0D2A144556A8} - System32\Tasks\RocketPC_pp2_2 => C:\Program Files (x86)\RocketPC\RPCEx.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {9C50B806-2E5E-49A3-8C14-2DBC388A3D29} - System32\Tasks\RocketPC_pp2_3 => C:\Program Files (x86)\RocketPC\RPCEx.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {BA5FBF1B-F50C-4DA1-AACE-27CB8821C87C} - System32\Tasks\RocketPC_pp2_1 => C:\Program Files (x86)\RocketPC\RPCEx.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: {C3A068D4-C3DF-4EFD-A31B-6B475ED2B782} - System32\Tasks\RocketPC_pp1 => C:\Program Files (x86)\RocketPC\RPCEx.exe (SOLVUSOFT CORPORATION -> Solvusoft) Task: C:\Windows\Tasks\PerfMonitor_once.job => C:\Program Files (x86)\RocketPC\PerformanceMonitor.exe Task: C:\Windows\Tasks\PerfMonitor_strtp.job => C:\Program Files (x86)\RocketPC\PerformanceMonitor.exe Task: C:\Windows\Tasks\RocketPC_period.job => C:\Program Files (x86)\RocketPC\RocketPC.exe Task: C:\Windows\Tasks\RocketPC_pp1.job => C:\Program Files (x86)\RocketPC\RPCEx.exe Task: C:\Windows\Tasks\RocketPC_pp2_1.job => C:\Program Files (x86)\RocketPC\RPCEx.exe Task: C:\Windows\Tasks\RocketPC_pp2_2.job => C:\Program Files (x86)\RocketPC\RPCEx.exe Task: C:\Windows\Tasks\RocketPC_pp2_3.job => C:\Program Files (x86)\RocketPC\RPCEx.exe Task: C:\Windows\Tasks\RocketPC_pp3_1.job => C:\Program Files (x86)\RocketPC\RPCEx.exe (Soraco Technologies Inc -> Soraco Technologies Inc.) [File not signed] C:\Program Files (x86)\RocketPC\IsLicense50.dllAlterations made by the installer:
File system details [View: All details] (Selection) --------------------------------------------------- Adds the folder C:\Program Files (x86)\RocketPC Adds the file help.ico"="10/31/2015 3:37 PM, 25214 bytes, A Adds the file IsLicense50.dll"="2/8/2016 4:13 AM, 911080 bytes, A Adds the file Local.xml"="11/11/2017 6:16 AM, 46212 bytes, A Adds the file PerformanceMonitor.exe"="11/15/2017 7:46 PM, 674480 bytes, A Adds the file RocketPC.exe"="11/15/2017 7:51 PM, 7110320 bytes, A Adds the file RocketPC.ini"="3/8/2019 10:03 AM, 465 bytes, A Adds the file RPCEx.exe"="11/15/2017 7:46 PM, 784560 bytes, A Adds the file unins000.dat"="3/8/2019 10:02 AM, 21311 bytes, A Adds the file unins000.exe"="3/8/2019 10:01 AM, 1223377 bytes, A Adds the file Updater.exe"="11/15/2017 7:46 PM, 642736 bytes, A Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketPC Adds the file RocketPC.lnk"="3/8/2019 10:02 AM, 1025 bytes, A Adds the file Uninstall RocketPC.lnk"="3/8/2019 10:02 AM, 1025 bytes, A Adds the folder C:\Users\{username}\AppData\Roaming\RocketPC\WL In the existing folder C:\Users\Public\Desktop Adds the file RocketPC.lnk"="3/8/2019 10:02 AM, 1007 bytes, A In the existing folder C:\Windows\System32\Tasks Adds the file PerfMonitor_once"="3/8/2019 10:02 AM, 2796 bytes, A Adds the file PerfMonitor_strtp"="3/8/2019 10:02 AM, 2494 bytes, A Adds the file RocketPC_period"="3/8/2019 10:02 AM, 2848 bytes, A Adds the file RocketPC_pp1"="3/8/2019 10:03 AM, 2656 bytes, A Adds the file RocketPC_pp2_1"="3/8/2019 10:03 AM, 2660 bytes, A Adds the file RocketPC_pp2_2"="3/8/2019 10:03 AM, 2660 bytes, A Adds the file RocketPC_pp2_3"="3/8/2019 10:03 AM, 2662 bytes, A Adds the file RocketPC_pp3_1"="3/8/2019 10:03 AM, 2846 bytes, A In the existing folder C:\Windows\Tasks Adds the file PerfMonitor_once.job"="3/8/2019 10:02 AM, 272 bytes, A Adds the file PerfMonitor_strtp.job"="3/8/2019 10:02 AM, 272 bytes, A Adds the file RocketPC_period.job"="3/8/2019 10:02 AM, 264 bytes, A Adds the file RocketPC_pp1.job"="3/8/2019 10:03 AM, 262 bytes, A Adds the file RocketPC_pp2_1.job"="3/8/2019 10:03 AM, 266 bytes, A Adds the file RocketPC_pp2_2.job"="3/8/2019 10:03 AM, 266 bytes, A Adds the file RocketPC_pp2_3.job"="3/8/2019 10:03 AM, 268 bytes, A Adds the file RocketPC_pp3_1.job"="3/8/2019 10:03 AM, 262 bytes, A Registry details [View: All details] (Selection) ------------------------------------------------ [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C4ABAB8-F6D3-4BC3-922D-43715A228CC2}] "(Default)"="REG_SZ", "IIsLicenseMgr" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C4ABAB8-F6D3-4BC3-922D-43715A228CC2}\ProxyStubClsid32] "(Default)"="REG_SZ", "{00020424-0000-0000-C000-000000000046}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C4ABAB8-F6D3-4BC3-922D-43715A228CC2}\TypeLib] "(Default)"="REG_SZ", "{8D732308-066E-4E85-9D5C-4410EB6BFDBC}" "Version"="REG_SZ", "1.0" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IsLicense50.IsLicenseMgr] "(Default)"="REG_SZ", "IsLicenseMgr Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IsLicense50.IsLicenseMgr\CLSID] "(Default)"="REG_SZ", "{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IsLicense50.IsLicenseMgr\CurVer] "(Default)"="REG_SZ", "IsLicense50.IsLicenseMgr.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IsLicense50.IsLicenseMgr.1] "(Default)"="REG_SZ", "IsLicenseMgr Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IsLicense50.IsLicenseMgr.1\CLSID] "(Default)"="REG_SZ", "{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8D732308-066E-4E85-9D5C-4410EB6BFDBC}\1.0] "(Default)"="REG_SZ", "IsLicense 5.0 Type Library" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8D732308-066E-4E85-9D5C-4410EB6BFDBC}\1.0\0\win32] "(Default)"="REG_SZ", "C:\Program Files (x86)\RocketPC\IsLicense50.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8D732308-066E-4E85-9D5C-4410EB6BFDBC}\1.0\FLAGS] "(Default)"="REG_SZ", "0" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8D732308-066E-4E85-9D5C-4410EB6BFDBC}\1.0\HELPDIR] "(Default)"="REG_SZ", "C:\Program Files (x86)\RocketPC" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}] "(Default)"="REG_SZ", "IsLicenseMgr Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}\InprocServer32] "(Default)"="REG_SZ", "C:\Program Files (x86)\RocketPC\IsLicense50.dll" "ThreadingModel"="REG_SZ", "Both" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}\ProgID] "(Default)"="REG_SZ", "IsLicense50.IsLicenseMgr.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}\Programmable] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}\TypeLib] "(Default)"="REG_SZ", "{8D732308-066E-4e85-9D5C-4410EB6BFDBC}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D7C6C53B-C335-417f-ABB8-F5A157F92EA0}\VersionIndependentProgID] "(Default)"="REG_SZ", "IsLicense50.IsLicenseMgr" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3C4ABAB8-F6D3-4BC3-922D-43715A228CC2}] "(Default)"="REG_SZ", "IIsLicenseMgr" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3C4ABAB8-F6D3-4BC3-922D-43715A228CC2}\ProxyStubClsid32] "(Default)"="REG_SZ", "{00020424-0000-0000-C000-000000000046}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3C4ABAB8-F6D3-4BC3-922D-43715A228CC2}\TypeLib] "(Default)"="REG_SZ", "{8D732308-066E-4E85-9D5C-4410EB6BFDBC}" "Version"="REG_SZ", "1.0" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\RocketPC_is1] "Contact"="REG_SZ", "www.solvusoft.com" "DisplayIcon"="REG_SZ", "C:\Program Files (x86)\RocketPC\help.ico" "DisplayName"="REG_SZ", "RocketPC" "DisplayVersion"="REG_SZ", "1.2.2.105" "EstimatedSize"="REG_DWORD", 12412 "Inno Setup: App Path"="REG_SZ", "C:\Program Files (x86)\RocketPC" "Inno Setup: Icon Group"="REG_SZ", "RocketPC" "Inno Setup: Language"="REG_SZ", "en" "Inno Setup: Setup Version"="REG_SZ", "5.5.9 (u)" "Inno Setup: User"="REG_SZ", "{username}" "InstallDate"="REG_SZ", "20190308" "InstallLocation"="REG_SZ", "C:\Program Files (x86)\RocketPC\" "MajorVersion"="REG_DWORD", 1 "MinorVersion"="REG_DWORD", 2 "NoModify"="REG_DWORD", 1 "NoRepair"="REG_DWORD", 1 "Publisher"="REG_SZ", "Solvusoft" "QuietUninstallString"="REG_SZ", ""C:\Program Files (x86)\RocketPC\unins000.exe" /SILENT" "UninstallString"="REG_SZ", ""C:\Program Files (x86)\RocketPC\unins000.exe"" "URLInfoAbout"="REG_SZ", "www.solvusoft.com" "VersionMajor"="REG_DWORD", 1 "VersionMinor"="REG_DWORD", 2Malwarebytes log:
Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 3/8/19 Scan Time: 10:22 AM Log File: a8fd07c0-4183-11e9-af1a-00ffdcc6fdfc.json -Software Information- Version: 3.7.1.2839 Components Version: 1.0.538 Update Package Version: 1.0.9594 License: Premium -System Information- OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: {computername}\{username} -Scan Summary- Scan Type: Threat Scan Scan Initiated By: Manual Result: Completed Objects Scanned: 236587 Threats Detected: 33 Threats Quarantined: 33 Time Elapsed: 4 min, 59 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Detect PUM: Detect -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 18 PUP.Optional.OptimizerEliteMax, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\PERFMONITOR_STRTP, Quarantined, [3213], [306455],1.0.9594 PUP.Optional.OptimizerEliteMax, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{63A0E5ED-65DA-4937-90BE-F5F9285D7FA6}, Quarantined, [3213], [306455],1.0.9594 PUP.Optional.OptimizerEliteMax, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{63A0E5ED-65DA-4937-90BE-F5F9285D7FA6}, Quarantined, [3213], [306455],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RocketPC_pp1, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C3A068D4-C3DF-4EFD-A31B-6B475ED2B782}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{C3A068D4-C3DF-4EFD-A31B-6B475ED2B782}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RocketPC_pp2_1, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BA5FBF1B-F50C-4DA1-AACE-27CB8821C87C}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{BA5FBF1B-F50C-4DA1-AACE-27CB8821C87C}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RocketPC_pp2_2, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9694F7DB-2818-4D71-A386-0D2A144556A8}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{9694F7DB-2818-4D71-A386-0D2A144556A8}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RocketPC_pp2_3, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9C50B806-2E5E-49A3-8C14-2DBC388A3D29}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{9C50B806-2E5E-49A3-8C14-2DBC388A3D29}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RocketPC_pp3_1, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0A1BE82C-F975-4B2E-B0C6-B694A1230F1F}, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{0A1BE82C-F975-4B2E-B0C6-B694A1230F1F}, Quarantined, [12790], [524469],1.0.9594 Registry Value: 1 PUP.Optional.OptimizerEliteMax, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{63A0E5ED-65DA-4937-90BE-F5F9285D7FA6}|PATH, Quarantined, [3213], [306457],1.0.9594 Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 0 (No malicious items detected) File: 14 PUP.Optional.OptimizerEliteMax, C:\WINDOWS\TASKS\PERFMONITOR_STRTP.job, Quarantined, [3213], [306455],1.0.9594 PUP.Optional.OptimizerEliteMax, C:\WINDOWS\SYSTEM32\TASKS\PERFMONITOR_STRTP, Quarantined, [3213], [306455],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\TASKS\RocketPC_pp1.job, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\SYSTEM32\TASKS\RocketPC_pp1, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\TASKS\RocketPC_pp2_1.job, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\SYSTEM32\TASKS\RocketPC_pp2_1, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\TASKS\RocketPC_pp2_2.job, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\SYSTEM32\TASKS\RocketPC_pp2_2, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\TASKS\RocketPC_pp2_3.job, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\SYSTEM32\TASKS\RocketPC_pp2_3, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\TASKS\RocketPC_pp3_1.job, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\WINDOWS\SYSTEM32\TASKS\RocketPC_pp3_1, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\PROGRAM FILES (X86)\ROCKETPC\RPCEX.EXE, Quarantined, [12790], [524469],1.0.9594 PUP.Optional.RocketPC, C:\USERS\{username}\DESKTOP\SETUP_ROCKETPC_2018.EXE, Quarantined, [12790], [524469],1.0.9594 Physical Sector: 0 (No malicious items detected) WMI: 0 (No malicious items detected) (end)As mentioned before the full version of Malwarebytes could have protected your computer against this threat.
We use different ways of protecting your computer(s):
- Dynamically Blocks Malware Sites & Servers
- Malware Execution Prevention