How to remove wvhdqsgr64.sys
- File Details
- Overview
- Analysis
wvhdqsgr64.sys
The module wvhdqsgr64.sys has been detected as Trojan.Agent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
509b647f0bd835b2854e4fd4013847f5 |
Size: |
55 KB |
First Published: |
2017-10-14 23:14:49 (7 years ago) |
Latest Published: |
2017-10-14 23:14:49 (7 years ago) |
Status: |
Trojan.Agent (on last analysis) |
|
Analysis Date: |
2017-10-14 23:14:49 (7 years ago) |
Overview
%localappdata%\microsoft\windows\system32 |
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0000c000 |
Name |
Size of data |
MD5 |
.text |
24064 |
1510f27004bae148e574326d32fa4274 |
.rdata |
4096 |
aae8519c9f8c9e2aa1f1158bf559fe46 |
.data |
1024 |
caf1def358ceb0465a9146dbff579ddf |
.pdata |
1536 |
a30e45c21882372516e1da5c98b30b27 |
.gfids |
512 |
64d1f04ee674327483852f238bb2c4a5 |
PAGE |
1024 |
821a74f8633b280db6b435c0b684499e |
INIT |
3072 |
373a7b2aabf4eeffbfa51e8c8b6f0ff2 |
.rsrc |
1024 |
e13dfeae1ede6a7765fb12d5fcfdc2ed |
.reloc |
512 |
318975f9c85e40aca40f44650633b38b |