How to remove B682982A672E.sys
- File Details
- Overview
- Analysis
B682982A672E.sys
The module B682982A672E.sys has been detected as Rootkit.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
9e2233176e8dbfeb35dbe2ec56a6fa55 |
Size: |
606 KB |
First Published: |
2018-12-26 14:28:45 (5 years ago) |
Latest Published: |
2020-11-20 19:25:48 (3 years ago) |
Status: |
Rootkit.Gen (on last analysis) |
|
Analysis Date: |
2020-11-20 19:25:48 (3 years ago) |
Overview
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
|
15.7% |
|
|
10.0% |
|
|
8.6% |
|
|
7.1% |
|
|
7.1% |
|
|
5.7% |
|
|
4.3% |
|
|
2.9% |
|
|
2.9% |
|
|
2.9% |
|
|
2.9% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
|
1.4% |
|
Windows 10 |
59.7% |
|
Windows 7 |
36.1% |
|
Windows 8.1 |
4.2% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x00098064 |
Name |
Size of data |
MD5 |
.text |
11264 |
abb49567f8d8c49c24fb06f520eaca7c |
.rdata |
1024 |
ea85be8ad8c5925b384b5aaf3d0ae098 |
.data |
595456 |
b3455cf3ca4f843439f0aa85d2899685 |
.pdata |
512 |
abde076ecdae0fe76fa64cdc38fa10e1 |
INIT |
2048 |
c816bbcb7ec21ff9b83d04036be9e9fb |
.rsrc |
1024 |
91533399eef2e25167232c8a07d73bed |