How to remove mfehidk.sys
- File Details
- Overview
- Analysis
mfehidk.sys
The module mfehidk.sys has been detected as Virtool.ShadowBrokers
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f7f3c743f7f7d4e58f1d2702d9dd0c0c |
Size: |
970 KB |
First Published: |
2019-11-12 17:26:19 (5 years ago) |
Latest Published: |
2019-11-12 17:26:19 (5 years ago) |
Status: |
Virtool.ShadowBrokers (on last analysis) |
|
Analysis Date: |
2019-11-12 17:26:19 (5 years ago) |
Overview
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x000f7000 |
Name |
Size of data |
MD5 |
.text |
771584 |
b7059c39761bae49d18520cd28f80af1 |
.rdata |
99328 |
4074f92be92ede48103c3710193d5dcd |
.data |
26112 |
3c9f47eef17ce18f53fad03d83b119bd |
.pdata |
48128 |
aba81207fa57c3ab5fc5f8d2ef4d040a |
.CRT |
512 |
7d12ff4a90af7e67e4abd477a1e61f13 |
.bldvar |
512 |
f6c72a0824a49ef67b0ebdfae65fa888 |
PAGE |
1536 |
7f04d8dbd1fa48afe29bc2367f3011d0 |
.edata |
512 |
f5b744f28313b5085aa027402442b522 |
INIT |
7168 |
22b025d0e0c1826576f33bbff9ff4e56 |
.rsrc |
2048 |
6d9956cf51b49c9676277def61786a69 |
.reloc |
11776 |
99f77820561de0f3fba2c8c0afa09f13 |