How to remove $REDYHS3.sys
- File Details
- Overview
- Analysis
$REDYHS3.sys
The module $REDYHS3.sys has been detected as PUP.MailRu
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
fb098256ea064803093d9b1a2f6d06ac |
| Size: |
9 MB |
| First Published: |
2018-10-05 20:08:24 (7 years ago) |
| Latest Published: |
2023-06-24 23:12:53 (2 years ago) |
| Status: |
PUP.MailRu (on last analysis) |
|
| Analysis Date: |
2023-06-24 23:12:53 (2 years ago) |
Overview
| %system% |
| %sysdrive%\$recycle.bin |
| %system% |
| %system% |
| %system% |
| %system% |
| %system% |
| %system% |
| %system% |
| %system% |
| mracdrv.sys |
| $REDYHS3.sys |
| $RAA79FM.sys |
| $RNBOJ2L.sys |
|
58.9% |
|
|
6.6% |
|
|
3.0% |
|
|
2.5% |
|
|
2.3% |
|
|
2.3% |
|
|
2.0% |
|
|
2.0% |
|
|
1.5% |
|
|
1.0% |
|
|
1.0% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
| Windows 10 |
67.5% |
|
| Windows 7 |
24.4% |
|
| Windows 8.1 |
7.8% |
|
| Windows Embedded 8.1 |
0.3% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x008a595e |
| Name |
Size of data |
MD5 |
| .text |
0 |
00000000000000000000000000000000 |
| PFCDENP |
0 |
00000000000000000000000000000000 |
| PCDENP |
0 |
00000000000000000000000000000000 |
| .rdata |
0 |
00000000000000000000000000000000 |
| .data |
0 |
00000000000000000000000000000000 |
| .pdata |
0 |
00000000000000000000000000000000 |
| .gfids |
0 |
00000000000000000000000000000000 |
| INIT |
0 |
00000000000000000000000000000000 |
| .vmp0 |
0 |
00000000000000000000000000000000 |
| .vmp1 |
512 |
387d3cec6641bcedbf49389f4d198e83 |
| .vmp2 |
10170880 |
2b3a1f9ca8ea98c2e954f25604f86e67 |
| .reloc |
512 |
c2c7ff237634b1ec57cf2f400bd3a9d2 |
| .rsrc |
1024 |
4b88d0a4f76ac73fb464c5a5f2ed814b |