How to remove mfewfpk.sys
- File Details
- Overview
- Analysis
mfewfpk.sys
The module mfewfpk.sys has been detected as Virtool.ShadowBrokers
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a9a8186cf3be1949ec48a52c948e3d22 |
Size: |
246 KB |
First Published: |
2019-11-12 17:33:07 (5 years ago) |
Latest Published: |
2019-11-12 17:33:07 (5 years ago) |
Status: |
Virtool.ShadowBrokers (on last analysis) |
|
Analysis Date: |
2019-11-12 17:33:07 (5 years ago) |
Overview
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00055000 |
Name |
Size of data |
MD5 |
.text |
154112 |
fec5ab7758c5bfbe68ac319c2b0b087f |
.rdata |
42496 |
0b887ef0aa11e1f477a08304abf4f988 |
.data |
6656 |
a05bb9de04d16b236bbe343b55d5a440 |
.pdata |
12288 |
c42e34ef6685b073e6a8e82432584b60 |
.bldvar |
512 |
f6c72a0824a49ef67b0ebdfae65fa888 |
.CRT |
512 |
a63f13283287ce47d1e98d717005a9a3 |
PAGE |
1536 |
4cfc7fecc32ccea9642f4b05182cf34c |
.edata |
512 |
29e372723c08cca29f5a5f29fb26e6dc |
INIT |
6144 |
7b4b5878e43d9063e1d34322287919d7 |
.rsrc |
1024 |
68d5545e3f2fd2a85e1aab8c4878973d |
.reloc |
2048 |
39f4662455e4a20d37edb51ea8695e6f |