How to remove captlib64.dll.quarantined
- File Details
- Overview
- Analysis
captlib64.dll.quarantined
The module captlib64.dll.quarantined has been detected as Adware.Babylon
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
5d8ba061fd7d4f4544e2f78c39578b76 |
| Size: |
259 KB |
| First Published: |
2017-12-27 13:02:25 (7 years ago) |
| Latest Published: |
2021-01-12 16:45:11 (4 years ago) |
| Status: |
Adware.Babylon (on last analysis) |
|
| Analysis Date: |
2021-01-12 16:45:11 (4 years ago) |
Overview
| %programfiles%\babylon |
| %appdata%\zhp\quarantine\babylon |
| %sysdrive%\$recycle.bin |
| %appdata%\zhp\quarantine\zhpcleaner\babylon |
| %programfiles%\babylon |
| %programfiles%\babylon |
| %programfiles%\babylon |
| %programfiles%\babylon |
| %programfiles%\babylon |
| %programfiles%\babylon |
| captlib64.dll |
| captlib64.dll.quarantined |
| $R0PQQVN.dll |
|
15.4% |
|
|
12.5% |
|
|
9.6% |
|
|
9.6% |
|
|
3.8% |
|
|
2.9% |
|
|
2.9% |
|
|
2.9% |
|
|
2.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
|
1.0% |
|
| Windows 10 |
75.5% |
|
| Windows 7 |
20.8% |
|
| Windows 8.1 |
3.8% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000180000000 |
| Entry Address: |
0x000126a8 |
| Name |
Size of data |
MD5 |
| .text |
155648 |
524e8eadd03dd8ee6ddf4f4ab393426c |
| .rdata |
81408 |
c26b1013e0ca67d94d5f25f7518657aa |
| .data |
4096 |
34bb68a92732cfddd47bb89047011f92 |
| .pdata |
9216 |
b347db681e9a650e61082b3e5ba2aad4 |
| .SHARDAT |
3072 |
6465f3537e7a3749f741c8746a2c6ccf |
| .gfids |
512 |
c83c6c028a6403299ddb008609cacd66 |
| .tls |
512 |
1f354d76203061bfdd5a53dae48d5435 |
| .rsrc |
1536 |
8da239098b887cf87613f4d3d9973142 |
| .reloc |
2048 |
8b91b9b858234d8531cac8e775c39be3 |