How to remove SF-Helper-[1179f1224c7dd122#399#].exe
- File Details
- Overview
- Analysis
SF-Helper-[1179f1224c7dd122#399#].exe
The module SF-Helper-[1179f1224c7dd122#399#].exe has been detected as PUP.SaveFrom
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
8a7d17b78402719f9a258cbc91182501 |
| Size: |
280 KB |
| First Published: |
2023-02-03 23:34:54 (2 years ago) |
| Latest Published: |
2024-10-08 23:01:40 (a year ago) |
| Status: |
PUP.SaveFrom (on last analysis) |
|
| Analysis Date: |
2024-10-08 23:01:40 (a year ago) |
Overview
| %desktop% |
| %profile% |
| %sysdrive%\windows.old\users\maxuel\appdata\local\programs\apphelper\tools |
| %localappdata%\programs\apphelper\tools |
| %desktop% |
| %desktop% |
| %localappdata%\programs\apphelper\tools |
| %localappdata%\programs\apphelper\tools |
| %localappdata%\programs\apphelper\tools |
| %profile% |
|
53.8% |
|
|
15.4% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
| Windows 10 |
61.5% |
|
| Windows 7 |
23.1% |
|
| Windows 8.1 |
15.4% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000034c5 |
| Name |
Size of data |
MD5 |
| .text |
26624 |
c25464d6f87775ef687d2492f92ddf9a |
| .rdata |
5632 |
e36c6ad0568cd039e0c7810069438d6d |
| .data |
1536 |
33b1d611a00420c98fa82231feaa907b |
| .ndata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rsrc |
119808 |
e679e09df68e562d4f2c1254613e0aa1 |