How to remove CouponsHelper.exe
- File Details
- Overview
- Analysis
CouponsHelper.exe
The module CouponsHelper.exe has been detected as Adware.SProtect
File Details
Product Name: |
|
Company Name: |
|
MD5: |
a0b2372a0847d62c8f9bfb0cb6cad106 |
Size: |
944 KB |
First Published: |
2017-08-28 16:08:38 (7 years ago) |
Latest Published: |
2018-11-13 19:12:13 (6 years ago) |
Status: |
Adware.SProtect (on last analysis) |
|
Analysis Date: |
2018-11-13 19:12:13 (6 years ago) |
Overview
Signed By: |
Spigot, Inc. |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%appdata% |
%profile%\edra\application data |
%sysdrive%\maikl-пк\backup set 2014-12-28 190011\backup files 2014-12-28 190011\backup files 11.zip\c\users\maikl\appdata\roaming |
%sysdrive%\maikl-пк\backup set 2015-01-18 190003\backup files 2015-01-18 190003\backup files 9.zip\c\users\maikl\appdata\roaming |
%sysdrive%\maikl-пк\backup set 2014-12-07 200201\backup files 2014-12-07 200201\backup files 8.zip\c\users\maikl\appdata\roaming |
%sysdrive%\adwcleaner\quarantine\c\documents and settings\owner\application data |
A0192244.exe |
CouponsHelper.exe |
BEHelper.exe |
behelper.exe |
BEHelper.exe.vir |
Windows 7 |
58.8% |
|
Windows 10 |
35.3% |
|
Windows XP |
5.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0008839b |
Name |
Size of data |
MD5 |
.text |
688128 |
e21a5b0e01d4b9ed153e5ca24b9a78ce |
.rdata |
113664 |
61546b732b210de10cd2c46f47927ec5 |
.data |
9728 |
5c6f1cd34100a81c989ca3127a17402d |
.rsrc |
119296 |
37774e93c43b61074fa8067b2beb8b92 |
.reloc |
29184 |
695c8d6a5385ef6dee8be6937f4946a6 |