How to remove libGLESv2.dll

libGLESv2.dll

The module libGLESv2.dll has been detected as Adware.ELEX

libGLESv2.dll

libGLESv2.dll is a Windows file recorded in the ThreatInfo database. It is associated with ANGLE libGLESv2 Dynamic Link Library. The current detection status is Adware.ELEX, based on the latest analysis from 2022-02-23 23:10:46 (4 years ago).

If libGLESv2.dll appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Adware.ELEX.

Product Name: ANGLE libGLESv2 Dynamic Link Library
MD5: 711cecdfa046234ea592181db6f8b2b0
Size: 6 MB
First Published: 2022-02-23 23:10:46 (4 years ago)
Latest Published: 2022-02-23 23:10:46 (4 years ago)
Status: Adware.ELEX (on last analysis)
Analysis Date: 2022-02-23 23:10:46 (4 years ago)
Signed By: 广东一一五科技股份有限公司
Status: Valid

The signature on libGLESv2.dll is reported as valid. A valid signature helps confirm publisher identity, but it does not automatically make the file safe if the installer was bundled, abused, or downloaded from an untrusted source.

%localappdata%\115chrome\application

ThreatInfo has observed libGLESv2.dll in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.

100.0%

The strongest geographic signal for this file is China with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.

Windows 10 100.0%

The most common operating system signal for libGLESv2.dll is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.

libGLESv2.dll is identified as pe for 32 systems. The subsystem is Windows CUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.

Subsystem: Windows CUI
PE Type: pe
OS Bitness: 32
Image Base: 0x10000000
Entry Address: 0x00436ffe

PE Sections:

Name Size of data MD5
.text 4581888 6f9fe221762e9fd691d911930e5b8448
.rdata 1909248 1573502ba94b2c11e003a5ca14427922
.data 159232 a5ec12456bda59c85cec88730006a47c
.00cfg 512 31b8949edcd9d016e90bcffaab5a7ac8
.tls 512 1f354d76203061bfdd5a53dae48d5435
.voltbl 512 dbbe8035df47ef48bcf9014ec7c05179
.rsrc 1536 3eb1a75591fb59cbbdebca369c9a1413
.reloc 245248 044d5685e3f954a54ca7ad96c6b46c1f

PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.

More information:

Download GridinSoft Anti-Malware - Removal tool for libGLESv2.dll