How to remove helper.exe

helper.exe

The module helper.exe has been detected as Hack.Patcher

helper.exe
Product Name:

Office Install Helper

Company Name:

KpoJIuK

MD5: 071126dae2600a5f9b2ddaf4d99af7f3
Size: 124 KB
First Published: 2020-06-17 14:47:50 (5 years ago)
Latest Published: 2021-07-11 20:52:50 (4 years ago)
Status: Hack.Patcher (on last analysis)
Analysis Date: 2021-07-11 20:52:50 (4 years ago)
%desktop%\installer 2020\office2019\5_6269174920849129857\microsoft office 2016-2019 x64 v2020.05
%profile%\downloads\font\compressed\office 2016-2019 pro.plus.2005.x64.kuyhaa\office 2016-2019 pro.plus.2005.x64.kuyhaa\microsoft.office.2016-2019x64.v2020.05
%profile%\downloads\microsoft office 2019 professional plus 16.0.11929.20300 (2019.09) (x64)
%profile%\downloads\microsoft office 2019 professional plus 16.0.11929.20300 (2019.09) (x64)
%sysdrive%\разбор\+ проги\проги\microsoft office 2016-2019 (2019.11)
%profile%\downloads\office 2016-2019 pro.plus.2005.x86.kuyhaa\office 2016-2019 pro.plus.2005.x86.kuyhaa\microsoft.office.2016-2019x86.v2020.05
%mydoc%\office 2016-2019 pro.plus.2004.x86.kuyhaa\office 2016-2019 pro.plus.2004.x86.kuyhaa\microsoft.office.2016-2019x86.v2020.04
%sysdrive%\microsoft office 2016-2019 professional plus x86 + visio + project 16.0.12430.20264 (2020.02)
%mydoc%\microsoft office 2016-2019 professional plus _ standard + visio + project 16.0.12827.20336 (2020.06) repack by kpojiuk
%sysdrive%\install\install\2016-2019\microsoft office 2016-2019 x64 v2019.09
45.5%
36.4%
9.1%
9.1%
Windows 10 75.0%
Windows 7 16.7%
Windows 8.1 8.3%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000039e3

PE Sections:

Name Size of data MD5
.text 28672 90332fa858d0bb01ae40e7029338e426
.rdata 11264 91eee43954e068e650f7b73a8b0e6915
.data 512 db9f7acbf1c3ddfe255077b699955dfa
.ndata 0 00000000000000000000000000000000
.rsrc 63488 9e21d5031614ff24049ca8b8063a568d
.reloc 4096 f3f5bdd89003a1891d914bb3ae243789

More information:

Download GridinSoft Anti-Malware - Removal tool for helper.exe