How to remove TesSafe.sys

TesSafe.sys

The module TesSafe.sys has been detected as PUP.Tencent

TesSafe.sys
Product Name:

Loader64

Company Name:

TENCENT

MD5: 6428364f90ec40e522aa578a1bf61099
Size: 542 KB
First Published: 2019-07-28 07:14:09 (4 years ago)
Latest Published: 2024-05-05 23:02:04 (a day ago)
Status: PUP.Tencent (on last analysis)
Analysis Date: 2024-05-05 23:02:04 (a day ago)
%system%
%system%
%system%
%system%
%system%
%system%
%system%
%system%
%system%
%system%
11.2%
11.0%
7.3%
6.1%
6.1%
5.3%
3.9%
3.3%
2.6%
2.1%
2.1%
1.7%
1.6%
1.6%
1.5%
1.4%
1.3%
1.2%
1.2%
1.1%
1.1%
1.1%
1.0%
1.0%
1.0%
0.9%
0.9%
0.9%
0.8%
0.7%
0.7%
0.7%
0.6%
0.6%
0.6%
0.6%
0.6%
0.5%
0.5%
0.5%
0.5%
0.5%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.4%
0.3%
0.3%
0.3%
0.3%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
0.1%
Windows 10 99.9%
Windows 8 0.1%
Subsystem: Native
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000000010000
Entry Address: 0x00024064

PE Sections:

Name Size of data MD5
.text 118784 ee610ab8d0c87c5fea706fe60af562b6
.rdata 6144 f38f52339976f76588235af09ad30843
.data 2048 cabefd4c47c6659deb2f19a90bb94d5a
.pdata 4608 c88e70321f2d44d1fd39aca46bf5cb97
INIT 3584 6d2ae53fa3f10de5fa6f44137cdfa4c2
.rsrc 1536 b6a54152d64dfeb0808232d4d9939815
.vmp0 512 e8b9491e9730626af2f21d845d94af49
.vmp1 382464 18857950a51785e615bca2e516cd7182
.reloc 512 57d7f0c9f1881e16ff3eb1fb4180fa55

More information:

Download GridinSoft Anti-Malware - Removal tool for TesSafe.sys