How to remove isafekrnl.sys
- File Details
- Overview
- Analysis
isafekrnl.sys
The module isafekrnl.sys has been detected as Adware.ELEX
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
d1f1da5d33f56950cc5fe73f0971bb61 |
| Size: |
220 KB |
| First Published: |
2017-05-28 10:05:01 (8 years ago) |
| Latest Published: |
2023-09-27 23:40:49 (2 years ago) |
| Status: |
Adware.ELEX (on last analysis) |
|
| Analysis Date: |
2023-09-27 23:40:49 (2 years ago) |
Overview
| %programfiles%\elex-tech\yac |
| %sysdrive%\adwcleaner\quarantine\files\lwthntbnanweosnrldacwhezbwocpgmk\yac |
| %sysdrive%\adwcleaner\quarantine\fraqbc8wsa\yac |
| %sysdrive%\system volume information\_restore{7f715b4f-4400-4814-95ca-09042b104f93}\rp696 |
| %sysdrive%\adwcleaner\quarantine\files\irsctracetditszmwvvlomfsiodasttq\yac |
| %sysdrive%\adwcleaner\quarantine\files\wgjufjpkfqnzlgvqatlodpfnyfrpcjxg\yac |
| %profile%\dmin\my documents\elex-tech\yac |
| %sysdrive%\windows.old.001\program files\elex-tech |
| %sysdrive%\e\program files\elex-tech |
| %programfiles%\elex-tech |
| iSafeKrnl.sys |
| isafekrnl.sys |
| A0244084.sys |
|
70.1% |
|
|
9.0% |
|
|
5.6% |
|
|
4.5% |
|
|
1.7% |
|
|
1.7% |
|
|
1.1% |
|
|
1.1% |
|
|
1.1% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
| Windows 7 |
91.0% |
|
| Windows XP |
7.9% |
|
| Windows 10 |
0.6% |
|
| Windows Vista |
0.6% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00010000 |
| Entry Address: |
0x0002f01d |
| Name |
Size of data |
MD5 |
| .text |
24704 |
46e8c51847e7c84bc1436ddf3726608e |
| .rdata |
18816 |
0e08802e0abe6264f2e595f47a54585e |
| .data |
73600 |
9fbc0dc15579fd2716270e8af4a8b42d |
| PAGE |
72832 |
4b318e10d39c5719026ddd176d19346b |
| INIT |
6784 |
03e440c0779ca2b796e4576944e159c0 |
| .rsrc |
1024 |
9cccff1b261190d5fe4a4e67a25b2829 |
| .reloc |
8576 |
715cf07eef095f21164ebf563922ea7b |