Information about gLhI38cjY139.exe
- File Details
- Overview
- Analysis
gLhI38cjY139.exe
File Details
Product Name: |
|
Company Name: |
|
MD5: |
9ad63c15371f7ec2e44ae4351ad81fe6 |
Size: |
64 KB |
First Published: |
2018-03-21 15:08:29 (6 years ago) |
Latest Published: |
2018-11-01 04:11:03 (6 years ago) |
Status: |
Undefined (on last analysis) |
|
Analysis Date: |
2018-11-01 04:11:03 (6 years ago) |
Overview
%programfiles%\tencent\qq |
%sysdrive%\adwcleaner\quarantine\files\adffrhjdbgqycjeetcugaobpnttpgcqp\qq |
%commonappdata%\tencent\qqupdate |
QQExternal.exe |
gLhI38cjY139.exe |
DflzNmI.exe |
Windows 10 |
71.4% |
|
Windows 7 |
28.6% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00007b08 |
Name |
Size of data |
MD5 |
.text |
30208 |
cf825f5edf269b70ed1a4964ad862c24 |
.rdata |
14848 |
bd9a7096bc2790c7a551e0c2f56d6097 |
.data |
512 |
cfa4190e0c434f5bca667b4936dab9c7 |
.gfids |
512 |
ca4392ef68f77e17b958ac554f59775c |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
2048 |
46e50d879f7543d7d27764c6c5048a6a |
.reloc |
3072 |
81865fc30c2c0b1777a71e9bdd0197e9 |