How to remove XP.sys
XP.sys
The module XP.sys has been detected as PUP.Tencent
File Details
Product Name: | QQKeyboard |
Company Name: | tenpay.com |
MD5: | 16e21fee52195514ac735e811e05d782 |
Size: | 25 KB |
First Published: | 2017-06-15 08:10:00 (7 years ago) |
Latest Published: | 2017-12-28 13:06:00 (6 years ago) |
Status: | PUP.Tencent (on last analysis) | |
Analysis Date: | 2017-12-28 13:06:00 (6 years ago) |
Overview
Signed By: | Tencent Technology(Shenzhen) Company Limited |
Status: | Valid |
Common Places:
%commondir%\tencent\paycenter |
%commondir%\tencent |
Geography:
60.0% | ||
20.0% | ||
20.0% |
OS Version:
Windows 10 | 40.0% | |
Windows 7 | 40.0% | |
Windows 8.1 | 20.0% |
Analysis
Subsystem: | Native |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00010000 |
Entry Address: | 0x00003ada |
PE Sections:
Name | Size of data | MD5 |
.text | 8192 | 0510e110bfd8488d542f9fc5b6be20d4 |
.rdata | 384 | 5024ad23b23b002600d1bc4bda58bb6f |
.data | 3584 | dfd48dc7fd493b2bccc10af5c9fae589 |
PAGE | 1408 | 518034b23c212d0162ddf5fed03f0100 |
INIT | 1152 | a22cfa5410182b7e7541401120711448 |
.rsrc | 896 | bc11f728404d714532724fbbe1d44de6 |
.reloc | 384 | 594bb4956f9fe375ab1ec6366b55f526 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for XP.sys