How to remove $RRKXGOB.sys
- File Details
- Overview
- Analysis
$RRKXGOB.sys
The module $RRKXGOB.sys has been detected as PUP.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
6b9604161d983ab026ef1cb1ec19fe8c |
Size: |
28 KB |
First Published: |
2017-05-21 06:07:26 (7 years ago) |
Latest Published: |
2019-05-29 05:18:11 (5 years ago) |
Status: |
PUP.Gen (on last analysis) |
|
Analysis Date: |
2019-05-29 05:18:11 (5 years ago) |
%system%\drivers |
%programfiles%\tencent\qqpcmgr\10.10.16443.223 |
%system% |
%programfiles%\tencent\qqpcmgr |
%sysdrive%\adwcleaner\quarantine\c\windows\syswow64 |
%system% |
%sysdrive%\adwcleaner\quarantine |
TS888x64.sys |
$RRKXGOB.sys |
ts888x64.sys |
TS888x64.sys.vir |
|
16.3% |
|
|
14.4% |
|
|
13.1% |
|
|
10.6% |
|
|
10.0% |
|
|
5.0% |
|
|
4.4% |
|
|
2.5% |
|
|
2.5% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.9% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
1.3% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
Windows 7 |
53.1% |
|
Windows 10 |
34.0% |
|
Windows 8.1 |
11.7% |
|
Windows Embedded 8.1 |
0.6% |
|
Windows 8 |
0.6% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x00009064 |
Name |
Size of data |
MD5 |
.text |
13824 |
f32d46c040b1eca2de8ad689de0197f8 |
.rdata |
1536 |
0559887dd1b3b0ad0faad29c9dbeedb9 |
.data |
512 |
f944670a7f552fab9c591400c28ebec6 |
.pdata |
512 |
789e3a19114a752ae5ea3a733d3ebcc5 |
INIT |
1536 |
3dffb578e2f308f91d51497ade9f8212 |
.rsrc |
1024 |
011f1ccaf53712ea6dda732f9534ce09 |