How to remove ihpul.exe
ihpul.exe
The module ihpul.exe has been detected as Adware.ELEX
File Details
Product Name: | TSvr |
Company Name: | TSvr |
MD5: | 655860ac806c83971a361cbec90f61c9 |
Size: | 999 KB |
First Published: | 2017-05-27 15:04:33 (7 years ago) |
Latest Published: | 2018-09-16 17:06:44 (6 years ago) |
Status: | Adware.ELEX (on last analysis) | |
Analysis Date: | 2018-09-16 17:06:44 (6 years ago) |
Overview
Signed By: | Wenchao Zhang |
Status: | Valid |
Common Places:
%windir%\temp\isteda9.tmp\tools |
%windir%\temp\ist6672.tmp\tools |
%windir%\temp\istaf0d.tmp\tools |
%windir%\temp\ista78b.tmp\tools |
%windir%\temp\istae4e.tmp\tools |
%windir%\temp\ist98e5.tmp\tools |
%windir%\temp\istfc59.tmp\tools |
%windir%\temp\ist4045.tmp\tools |
%sysdrive%\adwcleaner\quarantine\files\ounttpksbtlrwfqhblhkujpaplexocnf |
%windir%\temp\ist1a54.tmp |
Geography:
20.0% | ||
15.0% | ||
15.0% | ||
10.0% | ||
10.0% | ||
10.0% | ||
5.0% | ||
5.0% | ||
5.0% | ||
5.0% |
OS Version:
Windows 7 | 52.4% | |
Windows 8.1 | 23.8% | |
Windows 8 | 14.3% | |
Windows 10 | 9.5% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000114a |
PE Sections:
Name | Size of data | MD5 |
.text | 63488 | 200085befc9b7ace1150ec5aa0877f7d |
.rdata | 13824 | 61e4579fe0518854f4959be9942c2a0d |
.data | 9728 | 66cbbcd663dc286a251ca15b37320e90 |
.idata | 6144 | e1b72c2bfa1560f58b506db1925b1e38 |
.ndata | 0 | 00000000000000000000000000000000 |
.rsrc | 17920 | e97b265e566077bf6ea952ccb99e9e33 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ihpul.exe