How to remove Helper64.exe
- File Details
- Overview
- Analysis
Helper64.exe
The module Helper64.exe has been detected as Adware.MultiPlug
File Details
| MD5: |
190c794c920a2e7566e2a9bfdb03122d |
| Size: |
101 KB |
| First Published: |
2017-11-23 13:08:07 (8 years ago) |
| Latest Published: |
2021-01-09 19:39:44 (4 years ago) |
| Status: |
Adware.MultiPlug (on last analysis) |
|
| Analysis Date: |
2021-01-09 19:39:44 (4 years ago) |
Overview
| %programfiles%\galleon 3d screensaver |
| %programfiles%\digital clock 3d screensaver |
| %programfiles%\grand canyon 3d screensaver |
| %programfiles%\great pyramids 3d screensaver |
| %programfiles%\western railway 3d screensaver |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
|
31.3% |
|
|
15.6% |
|
|
12.5% |
|
|
9.4% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
3.1% |
|
|
3.1% |
|
|
3.1% |
|
|
3.1% |
|
| Windows 10 |
71.9% |
|
| Windows 7 |
28.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00001f18 |
| Name |
Size of data |
MD5 |
| .text |
45568 |
4c65419e7fd8d3a080866cb00de9d038 |
| .rdata |
37376 |
a5b395ad395b08c021ce35ebc5c27639 |
| .data |
2560 |
69a724fbf4610da83a1281c24a5d9a0e |
| .pdata |
3584 |
21b5cd5404cde22f421ce9e326942cf3 |
| .rsrc |
512 |
889ceaed2190c978cc08097da65233dc |
| .reloc |
2048 |
e3237b58495b14d049e5de369907ba9f |