How to remove HelpUtility.exe
- File Details
- Overview
- Analysis
HelpUtility.exe
The module HelpUtility.exe has been detected as PUP.Baidu
File Details
Product Name: |
|
MD5: |
3229d773bbfac04f4f9046c3c331de27 |
Size: |
123 KB |
First Published: |
2017-06-15 15:10:45 (6 years ago) |
Latest Published: |
2019-06-20 11:15:01 (4 years ago) |
Status: |
PUP.Baidu (on last analysis) |
|
Analysis Date: |
2019-06-20 11:15:01 (4 years ago) |
Overview
%appdata%\baidu\baiduyunguanjia |
%sysdrive%\windows.old\users\user\appdata\roaming\baidu\baiduyunguanjia |
%system%\config\systemprofile\appdata\roaming\baidu\baidunetdisk |
%sysdrive%\user-pc\backup set 2017-03-31 202951\backup files 2017-03-31 202951\backup files 16.zip\c\users\user\appdata\roaming\baidu |
%sysdrive%\user-pc\backup set 2017-07-02 190002\backup files 2017-07-02 190002\backup files 16.zip\c\users\user\appdata\roaming\baidu |
%sysdrive%\user-pc\backup set 2017-05-14 190001\backup files 2017-05-14 190001\backup files 16.zip\c\users\user\appdata\roaming\baidu |
%sysdrive%\user-pc\backup set 2017-08-20 190002\backup files 2017-08-20 190002\backup files 16.zip\c\users\user\appdata\roaming\baidu |
%sysdrive%\user-pc\backup set 2017-09-24 190003\backup files 2017-09-24 190003\backup files 16.zip\c\users\user\appdata\roaming\baidu |
%sysdrive%\user-pc\backup set 2017-12-17 190002\backup files 2017-12-17 190002\backup files 16.zip\c\users\user\appdata\roaming\baidu |
%sysdrive%\user-pc\backup set 2017-11-19 190004\backup files 2017-11-19 190004\backup files 16.zip\c\users\user\appdata\roaming\baidu |
helputility.exe |
HelpUtility.exe |
|
45.8% |
|
|
29.2% |
|
|
8.3% |
|
|
4.2% |
|
|
4.2% |
|
|
4.2% |
|
|
4.2% |
|
Windows 10 |
58.3% |
|
Windows 7 |
37.5% |
|
Windows 8.1 |
4.2% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000fa85 |
Name |
Size of data |
MD5 |
.text |
68096 |
c5d159b142442a6eb6447101ea6f7854 |
.rdata |
20480 |
c743eb41a46b8cc440660b899b8dbeeb |
.data |
2048 |
70fa123d2c35ae25ac873415a03bd1a9 |
.rsrc |
23552 |
6da02bfaae7a59907d119e6c43c20a05 |
.reloc |
5120 |
74ec3e1d0627b2b98d2483b436495c74 |