How to remove mfeavfk.sys
- File Details
- Overview
- Analysis
mfeavfk.sys
The module mfeavfk.sys has been detected as Virtool.ShadowBrokers
File Details
Product Name: |
|
Company Name: |
|
MD5: |
5cd755d94bedf73a4a3a3d86645549ed |
Size: |
370 KB |
First Published: |
2019-11-12 17:25:03 (5 years ago) |
Latest Published: |
2019-11-12 17:25:03 (5 years ago) |
Status: |
Virtool.ShadowBrokers (on last analysis) |
|
Analysis Date: |
2019-11-12 17:25:03 (5 years ago) |
Overview
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0005a000 |
Name |
Size of data |
MD5 |
.text |
281600 |
a8b660d9c313e90603032f2022f96c7d |
.rdata |
34304 |
718345a8337f2cd792c3b8557dbdb60d |
.data |
13312 |
665b9837e3fa070a79fa8234c1fbc07f |
.pdata |
14848 |
bf6c0682616b56cf17d61eb438b08172 |
.bldvar |
512 |
cf16689c190c8ca3b1b9a3c2c3f952d5 |
.CRT |
512 |
65c7d66519bf9f9b5c210611b37062d1 |
PAGE |
1536 |
e4da525f55072221bc4c6eb386b8d92a |
INIT |
4096 |
c5fe4fe9784ea95073c4204e5b8dd008 |
.rsrc |
2048 |
fc58b2ca9ca2200d7f084a1a022316e8 |
.reloc |
2560 |
3012647df8c87a52f5589811f7d0575f |