How to remove TAOKernelEx64.sys
- File Details
- Overview
- Analysis
TAOKernelEx64.sys
The module TAOKernelEx64.sys has been detected as PUP.Tencent
File Details
Company Name: |
|
MD5: |
f131940d7d0b0778fdfd0d4f327928cd |
Size: |
138 KB |
First Published: |
2017-05-22 08:08:30 (7 years ago) |
Latest Published: |
2017-10-08 14:07:11 (7 years ago) |
Status: |
PUP.Tencent (on last analysis) |
|
Analysis Date: |
2017-10-08 14:07:11 (7 years ago) |
Overview
%system%\drivers |
%programfiles%\tencent\qqpcmgr\11.4.17347.218 |
|
33.3% |
|
|
16.7% |
|
|
16.7% |
|
|
16.7% |
|
|
16.7% |
|
Windows 10 |
66.7% |
|
Windows 7 |
16.7% |
|
Windows 8.1 |
16.7% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x0000a850 |
Name |
Size of data |
MD5 |
.text |
97280 |
06db8c3e09fac06834bac07a1a0c875b |
.rdata |
6656 |
5a3c979ba48a0034a542a9573643e4ac |
.data |
7168 |
49f96125321c3a1c0147e2d2812ff988 |
.pdata |
4096 |
759e0a9d64c10612c250921bf9244ef0 |
INIT |
5120 |
d0d2078d6de1a2a5080da7c613f1a66d |
.rsrc |
1536 |
7432d1126a87650f0589255481d2393c |
.reloc |
512 |
c07fc704e687f6c8d29a8c8639318f22 |