How to remove XP.sys

XP.sys

The module XP.sys has been detected as PUP.Tencent

XP.sys
Product Name:

QQKeyboard

Company Name:

tenpay.com

MD5: 16e21fee52195514ac735e811e05d782
Size: 25 KB
First Published: 2017-06-15 08:10:00 (6 years ago)
Latest Published: 2017-12-28 13:06:00 (6 years ago)
Status: PUP.Tencent (on last analysis)
Analysis Date: 2017-12-28 13:06:00 (6 years ago)
%commondir%\tencent\paycenter
%commondir%\tencent
60.0%
20.0%
20.0%
Windows 10 40.0%
Windows 7 40.0%
Windows 8.1 20.0%
Subsystem: Native
PE Type: pe
OS Bitness: 32
Image Base: 0x00010000
Entry Address: 0x00003ada

PE Sections:

Name Size of data MD5
.text 8192 0510e110bfd8488d542f9fc5b6be20d4
.rdata 384 5024ad23b23b002600d1bc4bda58bb6f
.data 3584 dfd48dc7fd493b2bccc10af5c9fae589
PAGE 1408 518034b23c212d0162ddf5fed03f0100
INIT 1152 a22cfa5410182b7e7541401120711448
.rsrc 896 bc11f728404d714532724fbbe1d44de6
.reloc 384 594bb4956f9fe375ab1ec6366b55f526

More information:

Download GridinSoft Anti-Malware - Removal tool for XP.sys