How to remove WFini.exe
WFini.exe
The module WFini.exe has been detected as Adware.ELEX
File Details
Product Name: | WFini |
Company Name: | WFini LIMITED |
MD5: | 423ce6e9e189d1cf347c54a0e08c2ae9 |
Size: | 580 KB |
First Published: | 2017-05-25 12:05:41 (7 years ago) |
Latest Published: | 2018-09-16 17:06:41 (6 years ago) |
Status: | Adware.ELEX (on last analysis) | |
Analysis Date: | 2018-09-16 17:06:41 (6 years ago) |
Overview
Signed By: | Junyan Li |
Status: | Valid |
Common Places:
%programfiles%\sterkospsoviry |
%commonappdata%\hwinph |
%windir%\temp\istaf0d.tmp\tools |
%commonappdata%\pwinpp |
%windir%\temp\ist98e5.tmp\tools |
%commonappdata%\8winp8 |
%commonappdata% |
%windir%\temp\ist1a54.tmp |
%windir%\temp\istcef2.tmp |
%system% |
File Names:
wpm.exe |
WFini.exe |
Geography:
30.0% | ||
20.0% | ||
20.0% | ||
10.0% | ||
10.0% | ||
10.0% |
OS Version:
Windows 7 | 61.5% | |
Windows 8.1 | 15.4% | |
Windows 10 | 15.4% | |
Windows 8 | 7.7% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00054f1d |
PE Sections:
Name | Size of data | MD5 |
.text | 468992 | 191dce535367758999e0f59a50de7dca |
.rdata | 94208 | 9869d746be7d7b48796a15b5f3ab3125 |
.data | 13312 | cb9e9656365a8c76a07544d52e2acb50 |
.rsrc | 11264 | 764cc52b17e4ecef58634c8f6479b2f6 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for WFini.exe