Should I block it?
No, this file is 100% safe to run.
Additional versions
(Note, the developer publishes each variation of this file with the same version, but the hashes are unique.)
Relationships
Parent process
Child process
c+weject.exe
| MD5: | dd9d8a273d7ed18e249f9903641ffcaa |
| SHA1: | 5ba23b309f11a6e3cfd02cad385ec056f4799b14 |
| SHA256: | cbf476030b6efdfa3db4984a7f51400a36e09189fddb7e41e09b22def38f1534 |
Overview
c+weject.exe runs as a service under the name CDROM_Eject_Z (CDROM_Detect) with extensive SYSTEM privileges (full administrator access).
Details
| File name: | c+weject.exe |
| Typical file path: | C:\Program Files\smartfren connex ac782 ui\c+weject.exe |
| Size: | 262.5 KB (268,800 bytes) |
| Digital DNA |
| PE subsystem: | Windows Console |
| File packed: | No |
| .NET CLR: | No |
More details
Behaviors
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
- 'CDROM_Detect'
- 'CDROM_Eject_Z'
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
| CPU |
| Total CPU: | 0.00144768% | |
| Kernel CPU: | 0.00065855% | |
| User CPU: | 0.00078913% | |
| Kernel CPU time: | 67,677 ms/min | |
| CPU cycles: | 1,254/sec | |
| Context switches: | 12/sec | |
| Memory |
| Private memory: | 1.61 MB | |
| Private (maximum): | 3.03 MB | |
| Private (minimum): | 1.96 MB | |
| Non-paged memory: | 1.61 MB | |
| Virtual memory: | 37.51 MB | |
| Virtual memory (peak): | 39.26 MB | |
| Working set: | 2.11 MB | |
| Working set (peak): | 3.31 MB | |
| Page faults: | 972/min | |
| I/O |
| I/O other transfer: | 0 Bytes/sec | |
| I/O other operations: | 1/sec | |
| Resource allocations |
| Threads: | 3 | |
| Handles: | 61 | |
| GUI GDI count: | 8 | |
| GUI USER count: | 1 | |
Process properties
| Integrety level: | System |
| Platform: | 32-bit |
| Command line: | "C:\Program Files\smartfren connex ac782 ui\c+weject.exe" |
| Owner: | SYSTEM |
| Windows Service |
| Service name: | CDROM_Detect |
| Display name: | CDROM_Eject_Z |
| Type: | Win32OwnProcess, InteractiveProcess |
| Parent process: | services.exe (Services and Controller app by Microsoft) |
Distribution by Windows OS
| OS version | distribution |
| Microsoft Windows XP |
33.33% |
|
| Windows Vista Ultimate |
33.33% |
|
| Windows 7 Starter |
16.67% |
|
| Windows 7 Ultimate |
16.67% |
|
Distribution by country
Indonesia installs about 100.00% of c+weject.exe.
Distribution by PC manufacturer
| PC Manufacturer | distribution |
| ASUS |
50.00% |
|
| American Megatrends |
25.00% |
|
| Toshiba |
25.00% |
|