How to remove new_wow_helper.exe
- File Details
- Overview
- Analysis
new_wow_helper.exe
The module new_wow_helper.exe has been detected as Adware.Eszjuxuan
File Details
MD5: |
0abe796fcbfc0f7a27bd8ecd50d5134d |
Size: |
78 KB |
First Published: |
2017-05-21 03:02:01 (7 years ago) |
Latest Published: |
2025-03-16 23:03:42 (2 months ago) |
Status: |
Adware.Eszjuxuan (on last analysis) |
|
Analysis Date: |
2025-03-16 23:03:42 (2 months ago) |
Overview
%appdata%\ucchannel\package\chrome-bin |
%programfiles%\ucbrowser\application |
%profile%\dministrator\application data\ucchannel\package\chrome-bin |
%programfiles%\ucbrowser\temp\source9764_30066\chrome-bin |
%programfiles%\ucbrowser\application\new |
%programfiles%\ucbrowser\temp\source5364_189\chrome-bin |
%programfiles%\ucbrowser\temp\source3924_17984\chrome-bin |
%programfiles%\ucbrowser\temp\source2144_15877\chrome-bin |
%programfiles%\ucbrowser\temp\source7152_3682\chrome-bin |
%programfiles%\ucbrowser\temp\source5368_29375\chrome-bin |
wow_helper.exe |
new_wow_helper.exe |
wow_helper.exe.del |
Vietnam |
22.6% |
|
Taiwan |
16.0% |
|
Indonesia |
14.8% |
|
South Korea |
7.3% |
|
Thailand |
5.7% |
|
Turkey |
5.3% |
|
Hong Kong |
4.8% |
|
Japan |
1.8% |
|
Italy |
1.4% |
|
Romania |
1.3% |
|
Brazil |
1.1% |
|
Russia |
1.1% |
|
Hungary |
0.8% |
|
Poland |
0.8% |
|
Iran |
0.8% |
|
Malaysia |
0.7% |
|
Bulgaria |
0.7% |
|
Philippines |
0.6% |
|
United States |
0.6% |
|
China |
0.6% |
|
Chile |
0.5% |
|
Czech Republic |
0.5% |
|
Saudi Arabia |
0.5% |
|
Argentina |
0.5% |
|
Bosnia and Herzegovina |
0.5% |
|
Ukraine |
0.5% |
|
Spain |
0.4% |
|
India |
0.4% |
|
Israel |
0.4% |
|
Netherlands |
0.4% |
|
Egypt |
0.4% |
|
Denmark |
0.3% |
|
Australia |
0.3% |
|
Slovenia |
0.3% |
|
Algeria |
0.2% |
|
Mexico |
0.2% |
|
Pakistan |
0.2% |
|
United Arab Emirates |
0.2% |
|
South Africa |
0.2% |
|
Belarus |
0.2% |
|
Iraq |
0.2% |
|
Colombia |
0.2% |
|
Serbia |
0.2% |
|
United Kingdom |
0.2% |
|
France |
0.2% |
|
Germany |
0.2% |
|
Tunisia |
0.2% |
|
Croatia |
0.1% |
|
Uruguay |
0.1% |
|
Latvia |
0.1% |
|
Guatemala |
0.1% |
|
Greece |
0.1% |
|
Belgium |
0.1% |
|
Moldova |
0.1% |
|
Jordan |
0.1% |
|
Canada |
0.1% |
|
Portugal |
0.1% |
|
Ecuador |
0.1% |
|
Estonia |
0.1% |
|
Windows 7 |
51.3% |
|
Windows 10 |
40.2% |
|
Windows 8.1 |
7.0% |
|
Windows 8 |
1.0% |
|
Windows XP |
0.3% |
|
Windows Vista |
0.1% |
|
Windows Embedded Standard |
0.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00002430 |
Name |
Size of data |
MD5 |
.text |
43008 |
8e7c76fe1a2a876d0a32486a79f31a0f |
.rdata |
14848 |
8a4d6dae1ffb513a498e6af6231f35d8 |
.data |
4608 |
0b23b61333e0a07d35f0e3c64a30157b |
.pdata |
3072 |
233243fa1e81ba801b629c80ce96b5b9 |
.rsrc |
512 |
b3b723b59be19386e7c203cce186aeeb |