Information about netfilter2_8.sys
- File Details
- Overview
- Analysis
netfilter2_8.sys
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
05faae4b9d7bfccecb3223395a0ef7fc |
| Size: |
78 KB |
| First Published: |
2017-09-06 11:07:56 (8 years ago) |
| Latest Published: |
2022-01-29 21:39:50 (3 years ago) |
| Status: |
Undefined (on last analysis) |
|
| Analysis Date: |
2022-01-29 21:39:50 (3 years ago) |
Overview
| %profile%\downloads\nfsdk-demo-pf\bin\driver\wfp\windows8\amd64 |
| %system%\drivers |
| %commonappdata%\malwarebytes' anti-malware (portable) |
| %appdata%\skype\my skype received files |
| %sysdrive%\$recycle.bin\s-1-5-21-3163956098-3196896415-2454825928-1002 |
| %system% |
| %profile%\downloads\nfsdk-demo-pf\bin\driver\wfp\windows8 |
| %sysdrive%\netfilter\bin\driver\wfp\windows8 |
| %sysdrive%\downloads\nfsdk-demo-pf\bin\driver\wfp\windows8 |
| %sysdrive%\temp\firewall\netfilter\bin\driver\wfp\windows8 |
| netfilter2.sys |
| netfilter2_8.sys |
| netfilter2.sys-u.mbam |
| netfilter2.sys-k.mbam |
| $R1YWTYJ.sys |
|
28.1% |
|
|
25.4% |
|
|
6.4% |
|
|
4.6% |
|
|
3.5% |
|
|
2.4% |
|
|
2.2% |
|
|
2.2% |
|
|
2.0% |
|
|
2.0% |
|
|
1.8% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.1% |
|
|
1.1% |
|
|
0.9% |
|
|
0.9% |
|
|
0.9% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
| Windows 8.1 |
51.5% |
|
| Windows 8 |
26.3% |
|
| Windows 10 |
13.7% |
|
| Windows 7 |
7.5% |
|
| Windows Server 2012 |
0.2% |
|
| Windows Server 2012 R2 |
0.2% |
|
| Windows Embedded 8.1 |
0.2% |
|
| Windows Server 2016 |
0.2% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x0000c330 |
| Name |
Size of data |
MD5 |
| .text |
48128 |
498249b65a7d2f59dae0b7e8de4c3257 |
| .rdata |
4608 |
d3064ee75541e1f8441a495c998e3890 |
| .data |
2048 |
02fc0fda82e1b2a553dfb9a6aba9350a |
| .pdata |
2048 |
9dccee523ed1869fbab1653f2c16ada9 |
| INIT |
3584 |
be77982e41a97e629d5a2e761dd45b08 |
| .rsrc |
1536 |
d5a4dbe29e39c4572f5ed5867dd776ab |
| .reloc |
1024 |
f6b5ffd5a1da4d1ebb0566f93efc3957 |