mfeann.exe

MD5 Hash: e27136a82390985af69fb5b520faa5fd
SHA256 Hash: f6b9265d932a5505ac2940db7a18621832aeedfe6d153547b44a6708e81dfb0b
File size: 31600 bytes (31 KB.)
Last analysis: 19 Jul, 2018 08:41:49

Analysis MD5: e27136a82390985af69fb5b520faa5fd

Analysis of the file classifies it as a class A (Safe). The file is safe to use. The trust index of this analysis is 60 % (moderate).

A
B
C
D+
D
D-
E+
E
E-
F

Description

mfeann.exe is a Netshield. It is part of the application McAfee security, developed by McAfee. This program protect your system against viruses, Trojan horses and other threats

Filename: mfeann.exe (Netshield)
Threat analysis: Safe
Analysis trust:
60%
Recent activity:
First seen: 28 Sep, 2012
Last seen: 28 Sep, 2012
Last analysis: 19 Jul, 2018
Possible infection: Clean

mfeann.exe Netshield

Application: McAfee security
Developer: McAfee
Stability:
74%
File version: 14.1.0.587
File size: 31600 bytes (31 KB.)
Recent activity:
Historic activity:
MD5 hash: e27136a82390985af69fb5b520faa5fd
SHA1 hash: f3702d51f18a6d91767d19ca3585ee4650e09e1f
SHA256 hash: f6b9265d932a5505ac2940db7a18621832aeedfe6d153547b44a6708e81dfb0b
A

Signature verification

Signed and verified

This file is signed. The publisher is verified.

C

File entropy

File entropy match: File code

This file contains (executable) code.

File signature

Executable file

An executable file causes a computer "to perform indicated tasks according to encoded instructions," as opposed to a data file that must be parsed by a program to be meaningful.

The determination of a file type is done with a signature or magic-numbers. Files are identified using by comparing the first set of bytes in the file header. Using this method type of files are recognised no matter the extension used. This information is useful to for example recognise executable files cloaked as images or movies.


B

Malicious code scan

Slightly suspicious code found

Agics makes een analysis of the source code of the file. We look for comparisons with known malicious source code. This is a good way to detect new malicious files which are in fact variations of existing, and known malicious files.

Scan results:

15 %

A

Online virus scanners

Detection ration:

0 %
A

VirusShare.com

Not available on virusshare.com

VirusShare.com is a repository of malware samples to provide security researchers, incident responders, forensic analysts, and the morbidly curious access to samples of live malicious code. Presence of the sample on this site indicates that the file is (Once considered) being malicious.
Website: virusshare.com
B

National Software Reference Library

Not on the nsrl list

The NSRL contains a collection of digital signatures of known, traceable software applications. There are application hash values in the hash set which may be considered malicious, i.e. steganography tools and hacking scripts.
Website: www.nsrl.nist.gov

A

Statistic analysis

Statistic analysis of the file

Deviates from other files with the same name (imitation)
The file does have a certificate
This is not a common file
Normal code
B

Neural network analysis

Analysis: Low risk

A neural network is a type of artificial intelligence. It recognized patterns nog clear for a human viewer. Our neural network is surprisingly accurate in recognizing dangerous files. The value below is the predicted chance the file is malicious.

7%7 %

?

User feedback

Read feedback on this file from other users. Help other users by providing feedback yourself.

You can earn reputation points !

You are currently not logged in. Login, or Create an account

Feedback users:

There has been no user feedback provided yet.
You are not logged in. Only registered users can provide feedback. Login and help other users.

Login Create an account