How to remove 6LxMVA.sys
6LxMVA.sys
The module 6LxMVA.sys has been detected as Trojan.Agent
File Details
| MD5: | 8f832c7f99da5b3ccf2d8f5a7b5e1ae5 |
| Size: | 2 MB |
| First Published: | 2020-12-13 16:03:55 (4 years ago) |
| Latest Published: | 2021-12-12 21:37:11 (3 years ago) |
| Status: | Trojan.Agent (on last analysis) | |
| Analysis Date: | 2021-12-12 21:37:11 (3 years ago) |
Overview
| Signed By: | Fuqing Yuntan Network Tech Co.,Ltd. |
| Status: | Valid |
Common Places:
| %appdata%\microsoft\windows |
| %appdata%\microsoft\windows |
| %programs% |
| %appdata%\microsoft\windows |
| %desktop% |
| %desktop% |
| %desktop% |
| %desktop% |
| %commonprograms% |
| %commonappdata%\microsoft\windows |
Geography:
| 22.2% | ||
| 11.1% | ||
| 11.1% | ||
| 7.4% | ||
| 7.4% | ||
| 7.4% | ||
| 7.4% | ||
| 3.7% | ||
| 3.7% | ||
| 3.7% | ||
| 3.7% | ||
| 3.7% | ||
| 3.7% | ||
| 3.7% |
OS Version:
| Windows 10 | 89.3% | |
| Windows 7 | 10.7% |
Analysis
| Subsystem: | Native |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000000010000 |
| Entry Address: | 0x004dd529 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .pdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| INIT | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data1 | 2509312 | 70d490845169d971a6b133d0452e02f3 |
| .reloc | 512 | 95f2b1ad74626cd305726b4d2f4300e8 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 6LxMVA.sys