How to remove VCDRomX64.sys
- File Details
- Overview
- Analysis
VCDRomX64.sys
The module VCDRomX64.sys has been detected as Adware.Kuaiba
File Details
MD5: |
ff22dbcd6da9e40c480adb02fc3718e9 |
Size: |
24 KB |
First Published: |
2017-05-21 03:02:08 (7 years ago) |
Latest Published: |
2022-05-06 23:50:07 (3 years ago) |
Status: |
Adware.Kuaiba (on last analysis) |
|
Analysis Date: |
2022-05-06 23:50:07 (3 years ago) |
Overview
%system%\drivers |
%programfiles%\maoha\jisuzip\iso |
%system% |
%sysdrive%\adwcleaner\quarantine\files\ydnmbaqijnfabvujyxwxbtqpmxdpfwxp\jisuzip |
%sysdrive%\adwcleaner\quarantine\fraqbc8wsa\jisuzip |
%programfiles%\maoha\jisuzip |
%sysdrive%\adwcleaner\quarantine\files\ruddtdlmpjiuppfihbfbzcvopgmvqlgr\jisuzip |
%localappdata%\maoha\jisuzip |
%programfiles%\maoha\jisuzip |
%system% |
Indonesia |
20.8% |
|
Vietnam |
20.1% |
|
Taiwan |
11.4% |
|
Turkey |
7.2% |
|
Russia |
4.1% |
|
Thailand |
2.7% |
|
Hong Kong |
2.7% |
|
Iran |
2.6% |
|
South Korea |
2.5% |
|
Poland |
2.4% |
|
Belarus |
1.7% |
|
Hungary |
1.5% |
|
India |
1.4% |
|
Israel |
1.4% |
|
Romania |
1.2% |
|
Ukraine |
1.2% |
|
Spain |
1.1% |
|
Bulgaria |
1.1% |
|
Germany |
1.0% |
|
Brazil |
0.9% |
|
Czech Republic |
0.7% |
|
Algeria |
0.7% |
|
France |
0.7% |
|
Italy |
0.6% |
|
Japan |
0.6% |
|
Chile |
0.6% |
|
Portugal |
0.6% |
|
Greece |
0.5% |
|
Philippines |
0.5% |
|
Saudi Arabia |
0.5% |
|
China |
0.5% |
|
Slovakia |
0.4% |
|
United States |
0.2% |
|
United Kingdom |
0.2% |
|
South Africa |
0.2% |
|
Costa Rica |
0.2% |
|
Iraq |
0.2% |
|
Serbia |
0.2% |
|
Moldova |
0.2% |
|
Singapore |
0.1% |
|
Uruguay |
0.1% |
|
Montenegro |
0.1% |
|
Latvia |
0.1% |
|
Jordan |
0.1% |
|
Morocco |
0.1% |
|
Denmark |
0.1% |
|
Norway |
0.1% |
|
Tunisia |
0.1% |
|
Netherlands |
0.1% |
|
Malaysia |
0.1% |
|
Croatia |
0.1% |
|
Mexico |
0.1% |
|
Belgium |
0.1% |
|
Mongolia |
0.1% |
|
Canada |
0.1% |
|
Windows 7 |
53.2% |
|
Windows 10 |
36.6% |
|
Windows 8.1 |
9.7% |
|
Windows 8 |
0.6% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x00007178 |
Name |
Size of data |
MD5 |
.text |
6656 |
499ccfac511145bc16592a42f4c6e32d |
.rdata |
1024 |
2425c27243ddd9430da7913166e6c15c |
.data |
512 |
043c46095689123e1f5be96c109c2f46 |
.pdata |
512 |
b99c5e60459c3faaaa0649b9d3da4794 |
PAGE |
512 |
15a0426200f1bdc042bd88c6a67061db |
INIT |
2048 |
0e13da5ee7583d0a2daac1c8699e5641 |