How to remove QQWBCodeQuery.exe
- File Details
- Overview
- Analysis
QQWBCodeQuery.exe
The module QQWBCodeQuery.exe has been detected as Hijack.IE
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f6ea7bbd8b1134dde8237302dce37ab5 |
Size: |
617 KB |
First Published: |
2017-06-09 02:10:24 (6 years ago) |
Latest Published: |
2018-07-07 09:10:42 (5 years ago) |
Status: |
Hijack.IE (on last analysis) |
|
Analysis Date: |
2018-07-07 09:10:42 (5 years ago) |
Overview
%programfiles%\tencent\qqwubi\2.0.313.400 |
%sysdrive%\$recycle.bin\s-1-5-21-3038503062-4161877188-2483618455-1000\$rjcznq3\qqwubi |
%programfiles%\tencent\qqwubi |
qqwbcodequery.exe |
QQWBCodeQuery.exe |
Windows 7 |
50.0% |
|
Windows Server 2008 R2 |
43.8% |
|
Windows 10 |
6.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00046059 |
Name |
Size of data |
MD5 |
.text |
430080 |
d1e5d9c36d56c57d0ffa5712324e3aed |
.rdata |
81920 |
58e2774abd0753a5a5a039b2a53fc84a |
.data |
20480 |
df22ab0ce71e01eafe76caab0ce80850 |
.rsrc |
90112 |
a6809e37415cc66a20e94a440282eb02 |