How to remove keymulti.sys
- File Details
- Overview
- Analysis
keymulti.sys
The module keymulti.sys has been detected as Trojan.Heur!
File Details
Product Name: |
|
Company Name: |
|
MD5: |
ad363f4136ab695a5ec80201e70f3bae |
Size: |
205 KB |
First Published: |
2017-06-08 14:05:18 (7 years ago) |
Latest Published: |
2020-05-14 12:30:30 (4 years ago) |
Status: |
Trojan.Heur! (on last analysis) |
|
Analysis Date: |
2020-05-14 12:30:30 (4 years ago) |
Overview
Signed By: |
Multikey |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%localappdata%\temp |
%programfiles%\tempinstall |
%temp% |
%system% |
%temp% |
%system% |
%temp% |
%temp% |
%system% |
|
72.0% |
|
|
8.0% |
|
|
8.0% |
|
|
4.0% |
|
|
4.0% |
|
|
4.0% |
|
Windows 7 |
96.0% |
|
Windows 10 |
4.0% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00010000 |
Entry Address: |
0x0000d2e8 |
Name |
Size of data |
MD5 |
.text |
22528 |
7f1d85f9655f43077dafaa846b27eaab |
.data |
1024 |
a36316db194c9b7a7ad2a4a6f827ac27 |
PAGE |
28672 |
b67ba5a208b8ace949e6fc85640c6c2e |
INIT |
2048 |
a0e5eefb326a392fb81f4480020b8378 |
.rsrc |
1024 |
fa06677aed538d92cb3c7901e1b1df00 |
.mk0 |
2560 |
9c1bfb339e6842022e24b31d99909ed2 |
.mk1 |
147456 |
c4231a6b344393f41d63c96af191bb01 |
.reloc |
2048 |
776efb58e3ae9a37d78aa474acceed66 |