How to remove wintooll.exe
- File Details
- Overview
- Analysis
wintooll.exe
The module wintooll.exe has been detected as Adware.ELEX
File Details
MD5: |
6d6ad4de7d2055c7160addc397cc7235 |
Size: |
103 KB |
First Published: |
2017-07-09 13:06:51 (7 years ago) |
Latest Published: |
2018-07-14 13:11:43 (6 years ago) |
Status: |
Adware.ELEX (on last analysis) |
|
Analysis Date: |
2018-07-14 13:11:43 (6 years ago) |
Overview
%programfiles%\relgregeck\_allowdel_1756d |
%windir%\temp\upceafd.tmp\secondu71 |
%windir%\temp\upc7ffb.tmp\secondu71 |
%windir%\temp\upc7a.tmp\secondu71 |
%windir%\temp\upc99b2.tmp |
%windir%\temp\upc57b3.tmp |
%windir%\temp\upca4b0.tmp |
|
28.6% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
Windows 7 |
85.7% |
|
Windows 8 |
14.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001f8b |
Name |
Size of data |
MD5 |
.text |
61440 |
865cc4d452ce890752592a8b4bee66dc |
.rdata |
20992 |
c2f165fd34a1e8756f6e9e8fc7f75a95 |
.data |
4608 |
f84f01880ef8ef554d6357358211ede8 |
.rsrc |
7680 |
6701c9f72cdc5c748f1ac8eaaa056ec2 |
.reloc |
4096 |
e73dd48b8298bc51b886c38c66f8e542 |