How to remove QyFragment.exe.vir
- File Details
- Overview
- Analysis
QyFragment.exe.vir
The module QyFragment.exe.vir has been detected as PUP.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
c581eec8890684963c6e9257bc37328e |
Size: |
1 MB |
First Published: |
2017-05-30 16:08:23 (7 years ago) |
Latest Published: |
2021-01-10 11:00:18 (4 years ago) |
Status: |
PUP.Gen (on last analysis) |
|
Analysis Date: |
2021-01-10 11:00:18 (4 years ago) |
Overview
%sysdrive%\iqiyi video\common |
%sysdrive%\adwcleaner\quarantine\c\iqiyi video\common |
%sysdrive%\iqiyi video |
%sysdrive%\adwcleaner\quarantine\gtxsl1c00g |
%sysdrive%\iqiyi video |
%sysdrive%\iqiyi video |
%sysdrive%\iqiyi video |
%sysdrive%\iqiyi video |
%sysdrive%\iqiyi video |
%sysdrive%\iqiyi video |
QyFragment.exe |
QyFragment.exe.vir |
|
14.3% |
|
|
14.3% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
|
7.1% |
|
Windows 10 |
57.1% |
|
Windows 7 |
21.4% |
|
Windows 8.1 |
21.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000f7d94 |
Name |
Size of data |
MD5 |
.text |
1084928 |
bb5c8bae680d2fd164fd98e0de2347c7 |
.rdata |
225280 |
1e51e58feb0415b52bf90ad4b621b6d2 |
.data |
10240 |
72c801b77a169fabe3d569676d1c846b |
.rsrc |
67072 |
9444334f48af5aab8e9887c2ccc3fdb1 |
.reloc |
81408 |
0640407575aa7c876e5050cea36d24e1 |