How to remove wintool.exe
- File Details
- Overview
- Analysis
wintool.exe
The module wintool.exe has been detected as Adware.DNSKeep (Heuristic)
File Details
MD5: |
2e17bdb0e6c7b6813bd3bb5a60f7eb3f |
Size: |
647 KB |
First Published: |
2017-05-21 18:09:26 (7 years ago) |
Latest Published: |
2018-10-01 15:06:22 (6 years ago) |
Status: |
Adware.DNSKeep (Heuristic) (on last analysis) |
|
Analysis Date: |
2018-10-01 15:06:22 (6 years ago) |
Overview
%commonappdata%\wintools |
%sysdrive%\adwcleaner\quarantine\files\wliobllbaozldlrwxcpynwdzkhbpgopf |
%sysdrive%\adwcleaner\quarantine\files\wzyxnfphmbnpocznelflghjefrdteuor |
%sysdrive%\adwcleaner\quarantine\files\rxsnygcxwquymtndavmifbtcxqvpitnl |
%commonappdata% |
%sysdrive%\adwcleaner\quarantine\files |
|
37.5% |
|
|
18.8% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
Windows 7 |
56.3% |
|
Windows 10 |
31.3% |
|
Windows 8.1 |
6.3% |
|
Windows 8 |
6.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00050e30 |
Name |
Size of data |
MD5 |
.text |
441344 |
d5a435d56cc1d3008d1535c9c15e738e |
.rdata |
136704 |
aee233d64a3bf6e95ab6b243780ac400 |
.data |
7680 |
0655fd374782a26eafbb1d0711ab29b6 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
49152 |
c60eb058f533efae3e9cdb176d927949 |
.reloc |
20992 |
338043fd7a108f7a89cec937a0a59336 |