How to remove tessafe.sys
- File Details
- Overview
- Analysis
tessafe.sys
The module tessafe.sys has been detected as PUP.Tencent
File Details
Product Name: |
|
Company Name: |
|
MD5: |
581f54112eb982ba39b26232d4768d81 |
Size: |
532 KB |
First Published: |
2019-08-05 08:14:02 (5 years ago) |
Latest Published: |
2025-04-03 23:01:41 (3 months ago) |
Status: |
PUP.Tencent (on last analysis) |
|
Analysis Date: |
2025-04-03 23:01:41 (3 months ago) |
Overview
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
%system% |
Turkey |
14.5% |
|
India |
11.2% |
|
Vietnam |
8.5% |
|
Egypt |
7.5% |
|
Indonesia |
6.4% |
|
Brazil |
5.4% |
|
Philippines |
4.4% |
|
Pakistan |
3.7% |
|
Thailand |
2.9% |
|
Russia |
2.3% |
|
Peru |
2.3% |
|
Iran |
2.3% |
|
Algeria |
1.9% |
|
Nepal |
1.7% |
|
Morocco |
1.7% |
|
Iraq |
1.5% |
|
Ukraine |
1.5% |
|
Malaysia |
1.5% |
|
Jordan |
1.0% |
|
United States |
1.0% |
|
Libya |
0.8% |
|
France |
0.8% |
|
Taiwan |
0.8% |
|
Colombia |
0.8% |
|
Sri Lanka |
0.6% |
|
Mongolia |
0.6% |
|
Oman |
0.6% |
|
Poland |
0.6% |
|
Mexico |
0.6% |
|
Serbia |
0.6% |
|
Georgia |
0.6% |
|
Azerbaijan |
0.4% |
|
Comoros |
0.4% |
|
Myanmar |
0.4% |
|
United Arab Emirates |
0.4% |
|
Ecuador |
0.4% |
|
South Korea |
0.4% |
|
Netherlands |
0.4% |
|
Greece |
0.4% |
|
Saudi Arabia |
0.4% |
|
Germany |
0.4% |
|
Bosnia and Herzegovina |
0.4% |
|
Argentina |
0.4% |
|
Palestine |
0.2% |
|
Lebanon |
0.2% |
|
Latvia |
0.2% |
|
Mauritius |
0.2% |
|
Hungary |
0.2% |
|
Paraguay |
0.2% |
|
South Africa |
0.2% |
|
Dominican Republic |
0.2% |
|
Romania |
0.2% |
|
Italy |
0.2% |
|
Bangladesh |
0.2% |
|
Kazakhstan |
0.2% |
|
Bolivia |
0.2% |
|
Spain |
0.2% |
|
Chile |
0.2% |
|
Qatar |
0.2% |
|
Nigeria |
0.2% |
|
Panama |
0.2% |
|
Bulgaria |
0.2% |
|
Belarus |
0.2% |
|
Armenia |
0.2% |
|
Windows 7 |
75.0% |
|
Windows 8.1 |
22.6% |
|
Windows 8 |
1.4% |
|
Windows 10 |
0.6% |
|
Windows Embedded 8.1 |
0.4% |
|
Analysis
Subsystem: |
Native |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000010000 |
Entry Address: |
0x00024064 |
Name |
Size of data |
MD5 |
.text |
118784 |
ee610ab8d0c87c5fea706fe60af562b6 |
.rdata |
6144 |
f38f52339976f76588235af09ad30843 |
.data |
2048 |
cabefd4c47c6659deb2f19a90bb94d5a |
.pdata |
4608 |
c88e70321f2d44d1fd39aca46bf5cb97 |
INIT |
3584 |
6d2ae53fa3f10de5fa6f44137cdfa4c2 |
.rsrc |
1536 |
b6a54152d64dfeb0808232d4d9939815 |
.vmp0 |
512 |
e8b9491e9730626af2f21d845d94af49 |
.vmp1 |
382464 |
18857950a51785e615bca2e516cd7182 |
.reloc |
512 |
57d7f0c9f1881e16ff3eb1fb4180fa55 |