How to remove ToolStatus.dll
- File Details
- Overview
- Analysis
ToolStatus.dll
The module ToolStatus.dll has been detected as Risk.Rootkit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
9fff70f07122fbe2cb78efa154d703a2 |
Size: |
243 KB |
First Published: |
2019-10-09 10:24:53 (5 years ago) |
Latest Published: |
2019-10-09 10:24:53 (5 years ago) |
Status: |
Risk.Rootkit (on last analysis) |
|
Analysis Date: |
2019-10-09 10:24:53 (5 years ago) |
Overview
Signed By: |
Wen Jia Liu |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%desktop%\ze\vip1.5\prohacker\ce |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x0000adf0 |
Name |
Size of data |
MD5 |
.text |
77312 |
7741781fea450a62665e493d244286f0 |
.rdata |
49152 |
c56caae75a273713271fe7a816fee351 |
.data |
3072 |
280e01704b32e78ed080e2c6bfee317c |
.pdata |
5120 |
421d5d9e2d80b19c585c2a4102f083c8 |
.gfids |
512 |
201992a1d7c2277c8e01c6f6b04a2c3c |
.rsrc |
103936 |
4979b2dd173378012abe9105ccf11052 |
.reloc |
2048 |
283ed6e16ac02aea68c80cf972d0588e |