How to remove vnccom.SYS
vnccom.SYS
The module vnccom.SYS has been detected as Risk.RemoteAdmin
File Details
Product Name: | Rdv Soft |
Company Name: | RDV Soft |
MD5: | f6a0cc36f4cbda21b220ff2fb2195a36 |
Size: | 13 KB |
First Published: | 2017-09-28 23:02:24 (7 years ago) |
Latest Published: | 2018-09-21 15:05:37 (6 years ago) |
Status: | Risk.RemoteAdmin (on last analysis) | |
Analysis Date: | 2018-09-21 15:05:37 (6 years ago) |
Overview
Signed By: | uvnc bvba |
Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
%programfiles%\ultravnc addons |
%system%\drivers |
%programfiles% |
%system% |
%programfiles%\its |
File Names:
vnccom.sys |
vnccom.SYS |
Geography:
30.0% | ||
20.0% | ||
20.0% | ||
10.0% | ||
10.0% | ||
10.0% |
OS Version:
Windows 10 | 58.3% | |
Windows 7 | 41.7% |
Analysis
Subsystem: | Native |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00010000 |
Entry Address: | 0x00000ffa |
PE Sections:
Name | Size of data | MD5 |
.text | 640 | f232706dd190253426e7dedfc59474de |
.rdata | 384 | 5d6dea6f34651906aa7b32d4a2720621 |
.data | 128 | 8a65a8f2c1c961d9edecdac3bad497bb |
PAGE | 1664 | 837a078d0f8a7c1fe0a0a2f5443b2f4a |
INIT | 768 | c7341ed3ca7f379ae14b3610a21b02ab |
.rsrc | 1024 | de55cf22092371d65133bb34055443e0 |
.reloc | 256 | 6536c2b0e04468b6ebc3d46916a6705b |
More information:
Download GridinSoft
Anti-Malware - Removal tool for vnccom.SYS