How to remove ffHelper.exe
- File Details
- Overview
- Analysis
ffHelper.exe
The module ffHelper.exe has been detected as PUP.Visicom
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d599b8a2f36432b6f251d6328f735b37 |
Size: |
103 KB |
First Published: |
2019-03-18 20:15:44 (6 years ago) |
Latest Published: |
2024-11-05 23:01:40 (8 months ago) |
Status: |
PUP.Visicom (on last analysis) |
|
Analysis Date: |
2024-11-05 23:01:40 (8 months ago) |
Overview
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%appdata%\zhp\quarantine\zhpcleaner |
%programfiles% |
%sysdrive%\adwcleaner\quarantine |
%programfiles% |
|
18.8% |
|
|
12.5% |
|
|
12.5% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
|
6.3% |
|
Windows 10 |
94.1% |
|
Windows 7 |
5.9% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000038ce |
Name |
Size of data |
MD5 |
.text |
58880 |
6221fa448370e0e4e7de913f48db57c3 |
.rdata |
13824 |
eb79a4bdb9112236498b3a11cc8f7aa1 |
.data |
5632 |
86f6abfc69217b0d351e0e3d6c6acc98 |
.rsrc |
12800 |
fe16db4ccd450e4d2ea6ed870bb51c03 |
.reloc |
6656 |
b325fb9c3714e5040ec67921224e096c |