How to remove ComputerZLock_x64.sys
- File Details
- Overview
- Analysis
ComputerZLock_x64.sys
The module ComputerZLock_x64.sys has been detected as PUP.ChinAd
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3f93da55d512ba73391d3503a06bacfe |
Size: |
2 MB |
First Published: |
2018-10-05 15:13:59 (6 years ago) |
Latest Published: |
2024-09-08 23:01:08 (10 months ago) |
Status: |
PUP.ChinAd (on last analysis) |
|
Analysis Date: |
2024-09-08 23:01:08 (10 months ago) |
Overview
%appdata%\360bizhi |
%programfiles% |
%sysdrive% |
%programfiles%\ludashi |
%system%\config\systemprofile\appdata\roaming\360bizhi |
%system%\config\systemprofile\appdata\roaming\360bizhi |
%system%\config\systemprofile\appdata\roaming\360bizhi |
%programfiles%\ludashi |
%programfiles%\ludashi |
%programfiles% |
Dynwallpaper_x64.sys |
ComputerZLock_x64.sys |
HardwareProtectSlim_x64.sys |
HardwareProtect_x64.sys |
HardwareProtectEx_x64.sys |
brd55CE.tmp |
|
56.8% |
|
|
31.1% |
|
|
3.8% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
0.8% |
|
|
0.8% |
|
Windows 10 |
86.5% |
|
Windows 7 |
12.8% |
|
Windows Server 2008 R2 |
0.8% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x006a24ab |
Name |
Size of data |
MD5 |
.text |
0 |
00000000000000000000000000000000 |
.rdata |
0 |
00000000000000000000000000000000 |
.data |
0 |
00000000000000000000000000000000 |
.pdata |
0 |
00000000000000000000000000000000 |
INIT |
0 |
00000000000000000000000000000000 |
.l0 |
0 |
00000000000000000000000000000000 |
.l1 |
2719232 |
7a7deb4321b2d0beabccc9b1a1e79539 |
.reloc |
512 |
1c9df23f74420135fb021d2c825600eb |
.rsrc |
1536 |
991c52d1226c68a99d32daf155d8defe |