How to remove WFini.exe
WFini.exe
The module WFini.exe has been detected as Adware.ELEX
File Details
Product Name: | WFini |
Company Name: | WFini LIMITED |
MD5: | 5e7750f8a45e6d1b8712bbefd39518a2 |
Size: | 205 KB |
First Published: | 2017-05-25 04:10:52 (7 years ago) |
Latest Published: | 2020-08-06 12:44:35 (4 years ago) |
Status: | Adware.ELEX (on last analysis) | |
Analysis Date: | 2020-08-06 12:44:35 (4 years ago) |
Overview
Signed By: | Junyan Li |
Status: | Valid |
Common Places:
%system%\_twm |
%commonappdata%\nwinpn |
%commonappdata%\mwinpm |
%commonappdata%\ywinpy |
%sysdrive%\adwcleaner\quarantine\files\crdbwdqbonfeyhnfmzrlycoswnlwwpfo |
%system% |
%commonappdata% |
%allusersprofile%\\dane aplikacji |
%sysdrive%\adwcleaner\quarantine\files |
%system% |
File Names:
wpm.exe |
WFini.exe |
Geography:
23.5% | ||
17.6% | ||
7.8% | ||
7.8% | ||
7.8% | ||
7.8% | ||
7.8% | ||
3.9% | ||
3.9% | ||
3.9% | ||
2.0% | ||
2.0% | ||
2.0% | ||
2.0% |
OS Version:
Windows 7 | 80.4% | |
Windows 8.1 | 7.8% | |
Windows 10 | 5.9% | |
Windows XP | 5.9% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000fa54 |
PE Sections:
Name | Size of data | MD5 |
.text | 141824 | 6a4c896dd1dbab6d356036f7309bafd6 |
.rdata | 37888 | 5b27dfa4c2bffd95bde6a43611021f60 |
.data | 12288 | 781a3e7d8ba73a7a4c4c8008951af308 |
.rsrc | 11264 | 13c519aae9f8fdeca4fd9528c2a33f9d |
More information:
Download GridinSoft
Anti-Malware - Removal tool for WFini.exe