How to remove ToolkitPro1840vc140U.dll
            
        
    
    
    
    
    
        
            
                
                    
                    - File Details
- Overview
- Analysis
 
            
                ToolkitPro1840vc140U.dll
                
                The module ToolkitPro1840vc140U.dll has been detected as Ransom.Wacatac
                
                
                
                
                File Details
                
                
                    
                        
                            
                            
                        
                        
                        
                            | Product Name: |  | 
                        
                        
                        
                            | Company Name: |  | 
                        
                        
                            | MD5: | 7dab8f94ae413bda645bb6f311666f46 | 
                        
                        
                        
                            | Size: | 11 MB | 
                        
                        
                            | First Published: | 2024-04-08 23:00:50 (2 years ago) | 
                        
                            | Latest Published: | 2024-04-29 23:02:33 (2 years ago) | 
                    
                 
                
                
                    
                        
                            
                            
                        
                        
                            | Status: | Ransom.Wacatac (on last analysis) |  | 
                        
                            | Analysis Date: | 2024-04-29 23:02:33 (2 years ago) | 
                    
                 
                
                    Overview
                
                
                    
                        
                            
                            
                        
                        
                            | Signed By: | Flexera Software LLC | 
                        
                            | Status: | Invalid (digital signature could be stolen or file could be patched) | 
                    
                 
                
                
                
                
                    
                        
                        
                            
                                | %appdata% | 
                        
                        
                            
                                | %profile%\downloads\setupfiles__pswd__04012404__updated | 
                        
                        
                            
                                | %profile%\downloads\complete_pcsetup_2023_useas_passkey | 
                        
                    
                 
                
                
                
                
                
                
                
                
                
                
                
                    
                        
                        
                            | Windows 7 | 66.7% |  | 
                        
                        
                            | Windows 10 | 33.3% |  | 
                        
                    
                 
                
                
                
                
                Analysis
                
                
                
                    
                        
                            
                            
                        
                        
                        
                            | Subsystem: | Windows GUI | 
                        
                            | PE Type: | pe | 
                        
                            | OS Bitness: | 32 | 
                        
                        
                            | Image Base: | 0x67800000 | 
                        
                            | Entry Address: | 0x005676cd | 
                    
                 
                
                
                
                
                
                    
                        
                            
                            
                            
                        
                        
                            | Name | Size of data | MD5 | 
                        
                        
                            | .text | 6109184 | c9f7d348a2e19a33d87188bcd40bf5f4 | 
                        
                        
                            | .rdata | 3892736 | a0a3853653c84ce13017329159a43c66 | 
                        
                        
                            | .data | 169472 | 1b21eb41fc4642710f6a49505cfdbe7d | 
                        
                        
                            | .gfids | 512 | 493f83604ad9fd16cd8e4b490cfe3b1d | 
                        
                        
                            | .tls | 512 | 1f354d76203061bfdd5a53dae48d5435 | 
                        
                        
                            | .rsrc | 1287168 | b95ef4e8ebb4f4087ee1610e27ba8ab7 | 
                        
                        
                            | .reloc | 516608 | 70fc4f99ab72bb245f315b3e4dec72dc |