How to remove $RI6KCYO.sys

$RI6KCYO.sys

The module $RI6KCYO.sys has been detected as Adware.Kuaiba

$RI6KCYO.sys
Product Name:

WinMount Driver

Company Name:

WinMount International Inc

MD5: 006d85a0773f9f0d91e8208124f86b27
Size: 66 KB
First Published: 2017-06-10 21:07:04 (6 years ago)
Latest Published: 2017-11-29 11:04:10 (6 years ago)
Status: Adware.Kuaiba (on last analysis)
Analysis Date: 2017-11-29 11:04:10 (6 years ago)
Signed By: 上海广乐网络科技有限公司
Status: Valid
%programfiles%\smartcloudinput\x86
%programfiles%\辦揤\x86
%sysdrive%\$recycle.bin\s-1-5-21-2596509410-3180126698-1353339030-1000
KuaiZipDrive.sys
$RI6KCYO.sys
80.0%
20.0%
Windows 7 80.0%
Windows 10 20.0%
Subsystem: Native
PE Type: pe
OS Bitness: 32
Image Base: 0x00010000
Entry Address: 0x0000d63e

PE Sections:

Name Size of data MD5
.text 46336 379cc8c083ae8178ca9f091aa4650540
.rdata 7168 6c444de5f0cb1a878f9c7b43742b764b
.data 128 2e46271761bc1d0ed5a617abf30849ad
INIT 2432 9260f9a147d7f2ef2abbbf39d508b633
.rsrc 1024 e478865e0d3588c142f94b7235d4e84a
.reloc 2048 f6d6e7da1b8a41b5e2bbccf4d51531af

More information:

Download GridinSoft Anti-Malware - Removal tool for $RI6KCYO.sys