How to remove ihpul.exe
ihpul.exe
The module ihpul.exe has been detected as Adware.ELEX
File Details
Product Name: | TSvr |
Company Name: | TSvr |
MD5: | 72a2a0cc47b8a34cf6bf6ecd9f479d5c |
Size: | 872 KB |
First Published: | 2017-05-25 02:04:18 (7 years ago) |
Latest Published: | 2018-05-24 10:13:40 (6 years ago) |
Status: | Adware.ELEX (on last analysis) | |
Analysis Date: | 2018-05-24 10:13:40 (6 years ago) |
Overview
Signed By: | Wenchao Zhang |
Status: | Valid |
Common Places:
%commonappdata%\dwinpd\tmpx\_sspm |
%programfiles%\searchestoyesbnd |
%programfiles%\hohobnd |
%programfiles%\chzspjaotain |
%programfiles%\yessearches-bnd |
%sysdrive%\adwcleaner\quarantine\files\ebdtockywcknfigeidgqlzgjcfpuhuux |
%programfiles%\libasaraming |
%programfiles%\dodutystigusy |
%programfiles%\shuqogeclaale |
%programfiles% |
Geography:
16.7% | ||
16.7% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% | ||
8.3% |
OS Version:
Windows 7 | 83.3% | |
Windows XP | 8.3% | |
Windows 10 | 8.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000114a |
PE Sections:
Name | Size of data | MD5 |
.text | 63488 | 3e978e96956fc86b6f1f1ae81162f421 |
.rdata | 13824 | 40d5f9c280cd19e695bfa3031030672e |
.data | 9216 | 42bb0055f20c98883b72c276c3d7a845 |
.idata | 6144 | 0bbda7738b276a7bd2a8f8f4ea0ad05e |
.ndata | 0 | 00000000000000000000000000000000 |
.rsrc | 17920 | e13572b13c12374796cf30d5a1493971 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for ihpul.exe