Information about QyKernel.exe
- File Details
- Overview
- Analysis
QyKernel.exe
File Details
Product Name: |
|
Company Name: |
|
MD5: |
41ed5fce4e718d2a3d6e9a18d9cab711 |
Size: |
562 KB |
First Published: |
2017-07-24 10:18:21 (7 years ago) |
Latest Published: |
2018-08-19 18:12:46 (6 years ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2018-08-19 18:12:46 (6 years ago) |
%programfiles%\iqiyi video\lstyle |
%sysdrive%\windows.old.000\program files (x86)\iqiyi video\lstyle |
%sysdrive%\$recycle.bin\s-1-5-18\$rjk29q0\lstyle |
%programfiles%\iqiyi video |
Windows 10 |
50.0% |
|
Windows 7 |
50.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00019544 |
Name |
Size of data |
MD5 |
.text |
336384 |
10c2927f4c1ec2b828495a3ad2122822 |
.rdata |
67072 |
b89ffe2319e691fb9153077632b7f237 |
.data |
11264 |
4565bef5f2e8b9bce5a97d31906e55db |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
128000 |
ae11beb4998d7c52d697c69b180b7c09 |
.reloc |
26112 |
aa6d777871dd568b2cc521a83d491f0a |