How to remove $R41AMFC.sys
- File Details
- Overview
- Analysis
$R41AMFC.sys
The module $R41AMFC.sys has been detected as PUP.PCVARK
File Details
Product Name: |
|
Company Name: |
|
MD5: |
43874695fc8de2f96c41b8369f6be8d5 |
Size: |
47 KB |
First Published: |
2017-05-29 22:08:18 (7 years ago) |
Latest Published: |
2018-12-05 20:10:57 (5 years ago) |
Status: |
PUP.PCVARK (on last analysis) |
|
Analysis Date: |
2018-12-05 20:10:57 (5 years ago) |
Overview
%programfiles%\pc speed up |
%programfiles%\zrychleni pocitace |
%sysdrive%\adwcleaner\quarantine\files\mbuxzotodlqibucylppgoooglnnnmyfr |
%programfiles%\velocidade do pc |
%sysdrive%\adwcleaner\quarantine\rywtiizs2t |
%programfiles%\acelerar el pc |
%programfiles% |
%sysdrive%\$recycle.bin\s-1-5-21-3042114473-779663205-4002521735-1001 |
%sysdrive%\windows.old\program files (x86) |
%sysdrive%\adwcleaner\quarantine |
PCSpeedUp.sys |
$R41AMFC.sys |
|
34.9% |
|
|
14.0% |
|
|
9.3% |
|
|
7.0% |
|
|
7.0% |
|
|
4.7% |
|
|
4.7% |
|
|
4.7% |
|
|
4.7% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
Windows 10 |
59.1% |
|
Windows 7 |
36.4% |
|
Windows 8.1 |
4.5% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x0000b064 |
Name |
Size of data |
MD5 |
.text |
28160 |
4c50b04c68f311587b1af10ad5809b26 |
.rdata |
2560 |
bcb834d424aa13bd31bf468a95f369b0 |
.data |
1536 |
4027c01d7c9b0717773f4000524ddbe7 |
.pdata |
1536 |
190585f870b7c63d00d4221faf574996 |
INIT |
3072 |
15c6d7748a2531f8b3b521ea0ee61024 |
.rsrc |
1024 |
98e7c163272c963bbcb43cb0682c32bf |
.reloc |
512 |
19518ff0287b1a7ca47ff63acee1a643 |