How to remove ljLflO.sys
ljLflO.sys
The module ljLflO.sys has been detected as Worm.Boychi
File Details
MD5: | 2bb65715783676daecb087e277a83ca3 |
Size: | 3 MB |
First Published: | 2019-04-02 22:15:37 (5 years ago) |
Latest Published: | 2019-04-02 22:15:56 (5 years ago) |
Status: | Worm.Boychi (on last analysis) | |
Analysis Date: | 2019-04-02 22:15:56 (5 years ago) |
Overview
Signed By: | HT Srl |
Status: | Valid |
Common Places:
%system% |
%sysdrive%\windows.old\windows\system32 |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Native |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000140000000 |
Entry Address: | 0x0026e691 |
PE Sections:
Name | Size of data | MD5 |
.text | 0 | 00000000000000000000000000000000 |
.rdata | 0 | 00000000000000000000000000000000 |
.data | 0 | 00000000000000000000000000000000 |
.pdata | 0 | 00000000000000000000000000000000 |
PAGE | 0 | 00000000000000000000000000000000 |
INIT | 0 | 00000000000000000000000000000000 |
.lkh0 | 0 | 00000000000000000000000000000000 |
.lkh1 | 512 | 387d3cec6641bcedbf49389f4d198e83 |
.lkh2 | 3679232 | 69dff48ce44ba87f4b188d73c6dc9628 |
.reloc | 512 | e5e9f3251abb49c2589b95186d1f0ef1 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ljLflO.sys