How to remove isafekrnlboot.sys
- File Details
- Overview
- Analysis
isafekrnlboot.sys
The module isafekrnlboot.sys has been detected as Adware.ELEX
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
fc17957e7b5265f6d01defde9671ad7f |
| Size: |
49 KB |
| First Published: |
2017-05-29 22:07:44 (8 years ago) |
| Latest Published: |
2023-09-27 23:59:48 (2 years ago) |
| Status: |
Adware.ELEX (on last analysis) |
|
| Analysis Date: |
2023-09-27 23:59:48 (2 years ago) |
Overview
| %programfiles%\elex-tech\yac |
| %system%\drivers |
| %system% |
| %programfiles%\elex-tech |
| %desktop%\9622-b\program files\elex-tech |
| iSafeKrnlBoot.sys |
| isafekrnlboot.sys |
|
55.6% |
|
|
11.1% |
|
|
7.4% |
|
|
7.4% |
|
|
7.4% |
|
|
7.4% |
|
|
3.7% |
|
| Windows 7 |
81.5% |
|
| Windows XP |
18.5% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00010000 |
| Entry Address: |
0x00006ee7 |
| Name |
Size of data |
MD5 |
| .text |
1792 |
e9ea5923314f5e9105289a03e4f48143 |
| .rdata |
2560 |
f01ebed3c5beb7db9c0e11b4f8b256dc |
| .data |
6784 |
98209b4d22f21cde218d496cef357b9d |
| PAGE |
16000 |
d900ba0e7fa8131e76aa9d62958520ec |
| INIT |
1152 |
f24c451832fbf2ecd3910b82df3d7288 |
| .rsrc |
1024 |
c5454bf4dd3faefc7add0c914245db1f |
| .reloc |
2432 |
a9a1b267a58343b624de1ffc3a3926ab |