How to remove xp_mv2.sys
xp_mv2.sys
The module xp_mv2.sys has been detected as Risk.RemoteAdmin

File Details
Product Name: | UltraVnc miniport driver2 |
Company Name: | UVNC BVBA |
MD5: | 6429ccfa8e8af07b924473c0056475dd |
Size: | 11 KB |
First Published: | 2017-08-20 12:09:43 (7 years ago) |
Latest Published: | 2018-09-12 05:03:55 (6 years ago) |
Status: | Risk.RemoteAdmin (on last analysis) | |
Analysis Date: | 2018-09-12 05:03:55 (6 years ago) |
Overview
Signed By: | uvnc bvba |
Status: | Valid |
Common Places:
%programfiles%\opiekunnet\konsola\vnc\driver\xp64\driver |
%programfiles%\ultravnc\driver\xp64\driver |
%programfiles%\izex\nethelper client v7.0 x64 |
%programfiles%\ultravnc\driver\xp64 |
%sysdrive%\vnc\drivers\xp64 |
%programfiles%\izex |
%sysdrive%\ultravnc\drivers\xp64 |
%sysdrive%\常用軟體\ultravnc_1.0.6.5_for_win7\driver\xp64 |
%sysdrive%\常用軟體\ultravnc_1.0.6.5_tw\driver\xp64 |
%sysdrive%\apps\ultravncserver\app\ultravncserver\driver\xp64 |
File Names:
mv2.sys |
xp_mv2.sys |
Geography:
South Korea | 43.8% | |
Taiwan | 37.5% | |
Germany | 12.5% | |
Poland | 6.3% |
OS Version:
Windows 7 | 62.5% | |
Windows 10 | 31.3% | |
Windows Server 2008 R2 | 6.3% |
Analysis
Subsystem: | Native |
PE Type: | pe |
OS Bitness: | 64 |
Image Base: | 0x0000000000010000 |
Entry Address: | 0x00005008 |
PE Sections:
Name | Size of data | MD5 |
.text | 512 | 82b341ddd90e3c50c69d8f7d435001ec |
.rdata | 512 | 78ba69cd156f3961376e92f40f704264 |
.data | 512 | 043c46095689123e1f5be96c109c2f46 |
.pdata | 512 | a32fb8b8f58627cb6cff5eec9c191083 |
INIT | 512 | 957d3c802104d4039ebf1ce1dfd25d07 |
.rsrc | 1024 | 5b776b12354b6e74d023d34d54856dc9 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for xp_mv2.sys
