How to remove HardwareProtectEx.sys
- File Details
- Overview
- Analysis
HardwareProtectEx.sys
The module HardwareProtectEx.sys has been detected as PUP.ChinAd
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
6edd64948f30fd308ba0ca6cd467732a |
| Size: |
698 KB |
| First Published: |
2019-03-30 14:14:49 (6 years ago) |
| Latest Published: |
2024-09-08 23:01:13 (a year ago) |
| Status: |
PUP.ChinAd (on last analysis) |
|
| Analysis Date: |
2024-09-08 23:01:13 (a year ago) |
Overview
| %programfiles% |
| %programfiles% |
| %appdata%\360bizhi |
| %appdata%\360bizhi |
| %sysdrive%\ldsgamemaster |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %sysdrive%\ldsgamemaster |
|
46.4% |
|
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
3.6% |
|
| Windows 10 |
73.3% |
|
| Windows 7 |
26.7% |
|
Analysis
| Subsystem: |
Native |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00010000 |
| Entry Address: |
0x0091203e |
| Name |
Size of data |
MD5 |
| .text |
31744 |
59ccb8fac5a2dba3357391e391186575 |
| .rdata |
5632 |
7367901354e04374c1f5046bb362c3cd |
| .data |
4608 |
5d9a6e5f43bb0e79d0b22cc88874dc7a |
| INIT |
1536 |
090ea3632d137a1c0264e7b40bdd649b |
| W0 |
641024 |
49026e9525883cc3659ee7314c39a602 |
| .reloc |
2048 |
d526ce040d8bba7dae620db957e4b154 |
| .rsrc |
1536 |
aa497ddb268353f7d2305764e166bc61 |