How to remove winzipersvc.exe
- File Details
- Overview
- Analysis
winzipersvc.exe
The module winzipersvc.exe has been detected as Adware.ELEX
File Details
Product Name: |
|
Company Name: |
|
MD5: |
01ef6252edd3a03c4345149d3a151383 |
Size: |
1 MB |
First Published: |
2017-05-28 04:14:06 (7 years ago) |
Latest Published: |
2020-06-20 16:19:28 (4 years ago) |
Status: |
Adware.ELEX (on last analysis) |
|
Analysis Date: |
2020-06-20 16:19:28 (4 years ago) |
Overview
Signed By: |
Chencheng Cai |
Status: |
Invalid (digital signature could be stolen or file could be patched) |
%sysdrive%\docume~1\admini~1\locals~1\temp\ist2b8.tmp\tools\wzp\omigazip_patch |
%temp%\ist1f85.tmp\tools\wzp\omigazip_patch |
%temp%\istf30c.tmp\tools\wzp\omigazip_patch |
%programfiles%\winzipper |
%temp%\ist9e27.tmp\tools\wzp\omigazip_patch |
%temp%\istfe84.tmp\tools\wzp\omigazip_patch |
%programfiles% |
%sysdrive%\adwcleaner\quarantine\files |
%temp%\istc689.tmp\tools\wzp |
%temp%\ist67ca.tmp\tools\wzp |
|
30.0% |
|
|
15.0% |
|
|
15.0% |
|
|
10.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
|
5.0% |
|
Windows 7 |
60.0% |
|
Windows 8.1 |
25.0% |
|
Windows XP |
5.0% |
|
Windows 8 |
5.0% |
|
Windows 10 |
5.0% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000ad866 |
Name |
Size of data |
MD5 |
.text |
866304 |
79c229fe21099f3017ae092d009af2c7 |
.rdata |
285184 |
ab05d37732b1e464e571ab4b9f567889 |
.data |
21504 |
87d266e6cd6f0bc91808514677e3fbc4 |
.rsrc |
2048 |
61f99ec9ba42084dbf1ffe4174b38296 |
.reloc |
121856 |
457701029932d45885d61e029b6df062 |