How to remove ComputerZLock_x64.sys
- File Details
- Overview
- Analysis
ComputerZLock_x64.sys
The module ComputerZLock_x64.sys has been detected as PUP.ChinAd
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
3f93da55d512ba73391d3503a06bacfe |
| Size: |
2 MB |
| First Published: |
2018-10-05 15:13:59 (7 years ago) |
| Latest Published: |
2024-09-08 23:01:08 (a year ago) |
| Status: |
PUP.ChinAd (on last analysis) |
|
| Analysis Date: |
2024-09-08 23:01:08 (a year ago) |
Overview
| %appdata%\360bizhi |
| %programfiles% |
| %sysdrive% |
| %programfiles%\ludashi |
| %system%\config\systemprofile\appdata\roaming\360bizhi |
| %system%\config\systemprofile\appdata\roaming\360bizhi |
| %system%\config\systemprofile\appdata\roaming\360bizhi |
| %programfiles%\ludashi |
| %programfiles%\ludashi |
| %programfiles% |
| Dynwallpaper_x64.sys |
| ComputerZLock_x64.sys |
| HardwareProtectSlim_x64.sys |
| HardwareProtect_x64.sys |
| HardwareProtectEx_x64.sys |
| brd55CE.tmp |
|
56.8% |
|
|
31.1% |
|
|
3.8% |
|
|
2.3% |
|
|
2.3% |
|
|
2.3% |
|
|
0.8% |
|
|
0.8% |
|
| Windows 10 |
86.5% |
|
| Windows 7 |
12.8% |
|
| Windows Server 2008 R2 |
0.8% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000000010000 |
| Entry Address: |
0x006a24ab |
| Name |
Size of data |
MD5 |
| .text |
0 |
00000000000000000000000000000000 |
| .rdata |
0 |
00000000000000000000000000000000 |
| .data |
0 |
00000000000000000000000000000000 |
| .pdata |
0 |
00000000000000000000000000000000 |
| INIT |
0 |
00000000000000000000000000000000 |
| .l0 |
0 |
00000000000000000000000000000000 |
| .l1 |
2719232 |
7a7deb4321b2d0beabccc9b1a1e79539 |
| .reloc |
512 |
1c9df23f74420135fb021d2c825600eb |
| .rsrc |
1536 |
991c52d1226c68a99d32daf155d8defe |