How to remove w2k_mv2.sys
- File Details
- Overview
- Analysis
w2k_mv2.sys
The module w2k_mv2.sys has been detected as Risk.RemoteAdmin
File Details
Product Name: |
|
Company Name: |
|
MD5: |
653b44032dcac64bde665724dd6206e8 |
Size: |
10 KB |
First Published: |
2017-08-20 12:09:43 (7 years ago) |
Latest Published: |
2018-09-05 02:13:41 (6 years ago) |
Status: |
Risk.RemoteAdmin (on last analysis) |
|
Analysis Date: |
2018-09-05 02:13:41 (6 years ago) |
Overview
%programfiles%\opiekunnet\konsola\vnc\driver\w2k\driver |
%programfiles%\ultravnc\driver\w2k\driver |
%programfiles%\izex\nethelper client v7.0 |
%programfiles%\ultravnc\driver\w2k |
%sysdrive%\vnc\drivers\w2k |
%programfiles%\izex |
%sysdrive%\ultravnc\drivers\w2k |
%sysdrive%\常用軟體\ultravnc_1.0.6.5_for_win7\driver\w2k |
%sysdrive%\常用軟體\ultravnc_1.0.6.5_tw\driver\w2k |
%sysdrive%\apps\ultravncserver\app\ultravncserver\driver\w2k |
Windows 7 |
58.3% |
|
Windows 10 |
33.3% |
|
Windows Server 2008 R2 |
8.3% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00010000 |
Entry Address: |
0x00000785 |
Name |
Size of data |
MD5 |
.text |
256 |
03e09a91f58c7b771efd8f0007e88e8a |
.rdata |
256 |
4073f4c96a214500abfbd560d6c86b11 |
.data |
128 |
8a65a8f2c1c961d9edecdac3bad497bb |
.edata |
128 |
d2afeab9b9befbb2618680d3b66bcdcd |
INIT |
256 |
159f81aa12e8b362954f322b7d45cc0a |
.rsrc |
1024 |
beb5f019049c13bc354e6c813556dd1a |
.reloc |
128 |
32eb6e65d4d358f83da5a0d29862b59e |