How to remove ndfsr.exe
ndfsr.exe
The module ndfsr.exe has been detected as Trojan.Packed
File Details
Product Name: | Movavi Photo Editor 6 |
Company Name: | Movavi |
MD5: | f913154d309c2723d6983e259d2981c1 |
Size: | 1 MB |
First Published: | 2020-06-17 06:01:53 (4 years ago) |
Latest Published: | 2020-06-22 03:10:30 (4 years ago) |
Status: | Trojan.Packed (on last analysis) | |
Analysis Date: | 2020-06-22 03:10:30 (4 years ago) |
Common Places:
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
Geography:
30.0% | ||
30.0% | ||
20.0% | ||
10.0% | ||
10.0% |
OS Version:
Windows 7 | 60.0% | |
Windows 10 | 40.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x000bf2a3 |
PE Sections:
Name | Size of data | MD5 |
.text | 0 | 00000000000000000000000000000000 |
.rdata | 0 | 00000000000000000000000000000000 |
.data | 0 | 00000000000000000000000000000000 |
.vmp0 | 0 | 00000000000000000000000000000000 |
.vmp1 | 697344 | 8f1b4963bb5e6423b1c5f18a8b2e651f |
.rsrc | 372224 | 7678b175973eaba95ae327858a1d6e43 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ndfsr.exe