How to remove vnchooks.dll
- File Details
- Overview
- Analysis
vnchooks.dll
The module vnchooks.dll has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
92361a607f058473f9e10f48b8b2df9a |
Size: |
53 KB |
First Published: |
2017-08-25 16:08:41 (7 years ago) |
Latest Published: |
2018-09-13 09:09:57 (6 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2018-09-13 09:09:57 (6 years ago) |
Overview
%programfiles%\ultravnc |
%programfiles% |
%sysdrive%\tsai-ho_備份\2012-04-19_23-34-43\memeo\2012-04-19_23-34-43\c_\documents and settings\tsai-ho\my documents\downloads |
%sysdrive%\tsai-ho_備份\2012-04-19_23-34-43\memeo\2012-04-19_23-34-43\c_\tvqtemp |
%sysdrive%\backup ari consultorio\desktop\salvar\programas e documentos\hd novo\bkp\documents and settings\ari\configurações locais\temp\7zs2a4.tmp |
%sysdrive%\backup ari consultorio\desktop\salvar\programas e documentos\hd novo\bkp\documents and settings\ari\configurações locais\temp\7zsfc.tmp |
%sysdrive%\32gb_備份_20170910 |
%sysdrive%\ee\20120824 |
|
40.0% |
|
|
28.0% |
|
|
20.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
Windows 7 |
48.0% |
|
Windows 10 |
44.0% |
|
Windows 8.1 |
8.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x000025f1 |
Name |
Size of data |
MD5 |
.text |
24064 |
dfd512944285efbe80882b95a7587b1b |
.rdata |
11776 |
9146ecaa1b7288d7eb15a7439e1797ca |
.data |
3072 |
548457a81f1d656258732ca23e3d2c91 |
.SharedD |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
2048 |
75b4c9428060c1616bc8d1fb6d262157 |
.reloc |
4608 |
3696713746e81b1ea21a33034c06aa65 |