How to remove webshieldfilter.sys

webshieldfilter.sys

The module webshieldfilter.sys has been detected as PUP.PCProtect

webshieldfilter.sys
Product Name:

Windows (R) Win 7 DDK driver

Company Name:

Windows (R) Win 7 DDK provider

MD5: 8a756cff6a89e82f1806b11e17a3df2f
Size: 73 KB
First Published: 2018-11-17 01:11:33 (6 years ago)
Latest Published: 2025-02-08 23:03:27 (6 months ago)
Status: PUP.PCProtect (on last analysis)
Analysis Date: 2025-02-08 23:03:27 (6 months ago)
Signed By: Protected Antivirus Limited
Status: Valid
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
%programfiles%\totalav\urldrv\wfp\windows7
21.0%
7.9%
6.0%
5.7%
4.9%
4.6%
4.4%
4.1%
2.5%
2.2%
2.2%
2.2%
1.9%
1.9%
1.6%
1.4%
1.4%
1.4%
1.4%
1.1%
1.1%
1.1%
1.1%
1.1%
0.8%
0.8%
0.8%
0.8%
0.8%
0.8%
0.8%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
0.3%
Windows 10 76.2%
Windows 7 17.5%
Windows 8.1 4.5%
Windows Server 2008 R2 0.5%
Windows XP 0.5%
Windows Vista 0.3%
Windows Server 2016 0.3%
Windows 8 0.3%
Subsystem: Native
PE Type: pe
OS Bitness: 32
Image Base: 0x00010000
Entry Address: 0x0000e03e

PE Sections:

Name Size of data MD5
.text 44544 cd0ce6c48cbba51f05e324021485e21a
.rdata 2560 5bcbd9af59bb97f64d0a95f73bede0c7
.data 1024 e82607cd57e92eb2a17ed674917d721e
INIT 3584 f4b711b4e96386df8bc9ef339e4e7dae
.rsrc 1024 9b085ac1649a6419809bdbf625ea19d1
.reloc 3584 9ed120e1f5981198065cb4e5a12466d6

More information:

Download GridinSoft Anti-Malware - Removal tool for webshieldfilter.sys