How to remove wvhdqsgr.sys
- File Details
- Overview
- Analysis
wvhdqsgr.sys
The module wvhdqsgr.sys has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
e5caa3ed094f9ab8a2ec329fdd38fcf1 |
Size: |
46 KB |
First Published: |
2017-11-19 17:08:14 (7 years ago) |
Latest Published: |
2018-09-27 14:08:44 (6 years ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2018-09-27 14:08:44 (6 years ago) |
Overview
%localappdata%\microsoft\windows\system32 |
%sysdrive%\windows.old\users\calidad\appdata\local\microsoft\windows |
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00009000 |
Name |
Size of data |
MD5 |
.text |
18944 |
cb9e5f543319318ffd88b73f29e6bd6e |
.rdata |
2048 |
a379b67736db7a6c27085f76bb59b86f |
.data |
1024 |
db39cf8656d22e94e7e9b58a66a8b27f |
PAGE |
1024 |
0ca10a0642e873985386c877591ed239 |
INIT |
2560 |
b7bf856c02c8d52ff773468aa610167e |
.rsrc |
1024 |
15f5485baeec526d89b62618fe5132e1 |
.reloc |
1536 |
b93b6e6a79dadca61beca93b29f1c298 |