How to remove wzShellctx64.dll
- File Details
- Overview
- Analysis
wzShellctx64.dll
The module wzShellctx64.dll has been detected as Adware.ELEX
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a973cab52b18c0d3fa52e52ca04af10d |
Size: |
202 KB |
First Published: |
2017-05-28 04:14:04 (7 years ago) |
Latest Published: |
2023-07-26 23:52:50 (a year ago) |
Status: |
Adware.ELEX (on last analysis) |
|
Analysis Date: |
2023-07-26 23:52:50 (a year ago) |
Overview
Signed By: |
Chencheng Cai |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%sysdrive%\docume~1\admini~1\locals~1\temp\ist439.tmp\tools\wzp\omigazip_patch |
%temp%\ist8ebc.tmp\tools\wzp\omigazip_patch |
%temp%\ist5cda.tmp\tools\wzp |
%temp%\ist2480.tmp\tools\wzp |
%temp%\ist71b6.tmp\tools\wzp |
%sysdrive%\windows.old\users\trang\appdata\roaming\winziper\update\wzp_update_v2.2.74.exe\tools\wzp |
%sysdrive%\system volume information\systemrestore\frstaging\users\juliand\appdata\local\temp\ist899c.tmp\tools\wzp |
|
28.6% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
|
14.3% |
|
Windows 7 |
50.0% |
|
Windows XP |
12.5% |
|
Windows 8.1 |
12.5% |
|
Windows 10 |
12.5% |
|
Windows 8 |
12.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000180000000 |
Entry Address: |
0x0000deac |
Name |
Size of data |
MD5 |
.text |
97792 |
e4ab235897176f4f6d39e08821c4467c |
.rdata |
54272 |
5c550cf1fbb62ddc9ab3a4b6cb491fd9 |
.data |
8192 |
07b4d920a4a1a156627d96cb54b934c2 |
.pdata |
7680 |
38ff06e6720c4a36f8f1df6fc397534b |
.rsrc |
31744 |
5c5d0855f7925ec60566e7b439e2d64f |
.reloc |
3584 |
cf919762441f9acc7a007d06c259b551 |