How to remove vnchooks.dll
- File Details
- Overview
- Analysis
vnchooks.dll
The module vnchooks.dll has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3a2360b255496dc56e572c31c0b966a4 |
Size: |
125 KB |
First Published: |
2017-08-25 13:11:43 (7 years ago) |
Latest Published: |
2018-09-10 12:10:00 (6 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2018-09-10 12:10:00 (6 years ago) |
Overview
%programfiles%\ultravnc |
%programfiles% |
%sysdrive%\ate_debug\ultravnc |
|
27.8% |
|
|
16.7% |
|
|
16.7% |
|
|
5.6% |
|
|
5.6% |
|
|
5.6% |
|
|
5.6% |
|
|
5.6% |
|
|
5.6% |
|
|
5.6% |
|
Windows 7 |
66.7% |
|
Windows 10 |
16.7% |
|
Windows Server 2008 R2 |
16.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x00002dac |
Name |
Size of data |
MD5 |
.text |
82944 |
6eacfb2fff40cdb913a90cc57b9256a7 |
.rdata |
24576 |
e22045ed94c39f93f4cc7663362a13be |
.data |
4096 |
c6e8818f57ef191cf98c33e8b4425617 |
.pdata |
4608 |
ab94f790e89b37af53b8b0cb0d4a45b8 |
.SharedD |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
2048 |
e9bedea8c705b7f94edb2b3c0ecfe4da |
.reloc |
1536 |
c81d7e02c11a99609179c3600461239a |