How to remove QyKernel.exe
- File Details
- Overview
- Analysis
QyKernel.exe
The module QyKernel.exe has been detected as PUP.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
bf429b8f878d2b99f219a829a7016abd |
Size: |
641 KB |
First Published: |
2018-06-05 10:12:16 (6 years ago) |
Latest Published: |
2019-07-29 03:54:16 (5 years ago) |
Status: |
PUP.Gen (on last analysis) |
|
Analysis Date: |
2019-07-29 03:54:16 (5 years ago) |
Overview
%programfiles%\iqiyi video\lstyle |
%sysdrive%\iqiyi video\lstyle |
%sysdrive%\影片\拉\ppstream\lstyle |
%sysdrive%\aqiyi |
%sysdrive%\qiy\iqiyi video\lstyle |
%programfiles%\iqiyi video\lstyle |
%programfiles%\iqiyi video\lstyle |
%programfiles%\iqiyi video\lstyle |
%sysdrive%\裝機軟體\免安裝 |
%programfiles%\iqiyi video\lstyle |
qykernel.exe |
QyKernel.exe |
|
53.7% |
|
|
34.7% |
|
|
4.2% |
|
|
3.2% |
|
|
2.1% |
|
|
2.1% |
|
Windows 10 |
75.8% |
|
Windows 7 |
22.1% |
|
Windows 8.1 |
2.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00021b40 |
Name |
Size of data |
MD5 |
.text |
279040 |
c68213a639ef9f6b84a7ac65ec5ae7c9 |
.rdata |
114688 |
b14d81007bfa020cfe73bc5fd11d53d7 |
.data |
6144 |
30b61cc46e524de8812a26e4f7be0c8e |
.gfids |
1024 |
f374cba9a4ca490624a3a01a6685b739 |
.rsrc |
240640 |
4ce9348091e1ec0516f85042a7bc82dd |