How to remove new_wow_helper.exe
- File Details
- Overview
- Analysis
new_wow_helper.exe
The module new_wow_helper.exe has been detected as Adware.Eszjuxuan
File Details
MD5: |
0abe796fcbfc0f7a27bd8ecd50d5134d |
Size: |
78 KB |
First Published: |
2017-05-21 03:02:01 (7 years ago) |
Latest Published: |
2019-12-13 14:47:47 (4 years ago) |
Status: |
Adware.Eszjuxuan (on last analysis) |
|
Analysis Date: |
2019-12-13 14:47:47 (4 years ago) |
Overview
%appdata%\ucchannel\package\chrome-bin |
%programfiles%\ucbrowser\application |
%profile%\dministrator\application data\ucchannel\package\chrome-bin |
%programfiles%\ucbrowser\temp\source9764_30066\chrome-bin |
%programfiles%\ucbrowser\application\new |
%programfiles%\ucbrowser\temp\source5364_189\chrome-bin |
%programfiles%\ucbrowser\temp\source3924_17984\chrome-bin |
%programfiles%\ucbrowser\temp\source2144_15877\chrome-bin |
%programfiles%\ucbrowser\temp\source7152_3682\chrome-bin |
%programfiles%\ucbrowser\temp\source5368_29375\chrome-bin |
wow_helper.exe |
new_wow_helper.exe |
wow_helper.exe.del |
|
22.6% |
|
|
16.0% |
|
|
14.8% |
|
|
7.3% |
|
|
5.7% |
|
|
5.3% |
|
|
4.8% |
|
|
1.8% |
|
|
1.4% |
|
|
1.3% |
|
|
1.1% |
|
|
1.1% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.6% |
|
|
0.6% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
Windows 7 |
51.3% |
|
Windows 10 |
40.2% |
|
Windows 8.1 |
7.0% |
|
Windows 8 |
1.0% |
|
Windows XP |
0.3% |
|
Windows Vista |
0.1% |
|
Windows Embedded Standard |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00002430 |
Name |
Size of data |
MD5 |
.text |
43008 |
8e7c76fe1a2a876d0a32486a79f31a0f |
.rdata |
14848 |
8a4d6dae1ffb513a498e6af6231f35d8 |
.data |
4608 |
0b23b61333e0a07d35f0e3c64a30157b |
.pdata |
3072 |
233243fa1e81ba801b629c80ce96b5b9 |
.rsrc |
512 |
b3b723b59be19386e7c203cce186aeeb |