How to remove WSHelper.exe
- File Details
- Overview
- Analysis
WSHelper.exe
The module WSHelper.exe has been detected as Trojan.Packed
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
aabf93f351e17ea4d42ee028a905af45 |
| Size: |
1 MB |
| First Published: |
2022-02-28 23:31:18 (3 years ago) |
| Latest Published: |
2022-06-12 23:46:19 (3 years ago) |
| Status: |
Trojan.Packed (on last analysis) |
|
| Analysis Date: |
2022-06-12 23:46:19 (3 years ago) |
Overview
| %commondir%\wondershare |
| %commondir%\wondershare |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0019340c |
| Name |
Size of data |
MD5 |
| .text |
1639424 |
66c5e933ce00b7ec3a3cc7993474f22b |
| .itext |
6144 |
f7666069b19311e0953a5b1afd91d8b0 |
| .data |
64000 |
dcdd37df9f274f281d0d42ee6af9f658 |
| .bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
18944 |
e2d82112b72ac7e703f7e3f0e9c6d04f |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
512 |
47745d20c912f58addc52a09b530fc20 |
| .reloc |
100864 |
5d1db205f932904fc1b94df7de62e20f |
| .rsrc |
145920 |
8d28d055a57c7b739a37a6684c4a0d2e |