How to remove mfefirek.sys
- File Details
- Overview
- Analysis
mfefirek.sys
The module mfefirek.sys has been detected as Virtool.ShadowBrokers
File Details
Product Name: |
|
Company Name: |
|
MD5: |
2d677f6ad6717898ea75c3eb60fd2d67 |
Size: |
504 KB |
First Published: |
2019-11-12 17:12:17 (5 years ago) |
Latest Published: |
2019-11-12 17:12:17 (5 years ago) |
Status: |
Virtool.ShadowBrokers (on last analysis) |
|
Analysis Date: |
2019-11-12 17:12:17 (5 years ago) |
Overview
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0007b000 |
Name |
Size of data |
MD5 |
.text |
363008 |
ebaf6af6f640f3627ffeb7798a72cdcf |
.rdata |
66560 |
8ee23c1229ce42267185d8d32ae37f18 |
.data |
16896 |
2a72b587db9c48e34c3dcd004a1578da |
.pdata |
28672 |
307fcc621b6a8627b22a679a37b7cbbe |
.bldvar |
512 |
f6c72a0824a49ef67b0ebdfae65fa888 |
.CRT |
512 |
a85ec080925be05ba44e52fb185c6fee |
PAGE |
1536 |
c98deb09bbad045de2ddfd9117057d5c |
INIT |
3584 |
6243a200882591dccad97f3fe3d2fb71 |
.rsrc |
1024 |
f72beb824260ef27446939cdfd9eed24 |
.reloc |
10240 |
92cb5ea598a91199e789cabdcb2c3248 |