How to remove vnchooks.dll
- File Details
- Overview
- Analysis
vnchooks.dll
The module vnchooks.dll has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
97246885936d3f17df7cdfa19a0ca22b |
Size: |
65 KB |
First Published: |
2017-08-15 04:03:36 (7 years ago) |
Latest Published: |
2020-03-04 03:19:02 (4 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2020-03-04 03:19:02 (4 years ago) |
Overview
%desktop%\ultravncportabletw\32\w2k |
%sysdrive%\$recycle.bin\s-1-5-21-306883998-2882379490-1991783170-1001\$r9qmq2q\w2k |
%programfiles%\level platforms\onsite manager\bin\mwultravnc |
%desktop%\程式\ultravncportabletw\32\w2k |
%programfiles%\impcremote\uvnc |
%desktop%\v1.9.0.05\ystools\ultravncportabletw\32\w2k |
%desktop%\ultravncportabletw\32 |
%desktop%\3d\ultravncportabletw_1.2.1.1_azo\ultravncportabletw\32 |
%programfiles%\impcremote |
%programfiles%\level platforms\onsite manager\bin |
|
37.5% |
|
|
28.1% |
|
|
18.8% |
|
|
9.4% |
|
|
3.1% |
|
|
3.1% |
|
Windows 10 |
59.4% |
|
Windows 7 |
28.1% |
|
Windows Server 2012 R2 |
9.4% |
|
Windows 8 |
3.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x10000000 |
Entry Address: |
0x00002700 |
Name |
Size of data |
MD5 |
.text |
31232 |
1aeaade8fcb0f1c2648179460b3c39d1 |
.rdata |
10752 |
d84f7d4d1ceb672bcbd159745e7b0286 |
.data |
3584 |
4c5e10eeb9b348854fb1809047e33511 |
.rsrc |
1536 |
4006b986e38a940022bc211d6a7c4147 |
.reloc |
5632 |
4ac92ae7fe9e044b94ada9a97faf53b8 |