How to remove wpm.exe
wpm.exe
The module wpm.exe has been detected as Adware.ELEX
File Details
Product Name: | WFini |
Company Name: | WFini LIMITED |
MD5: | 2cdf98aa3c787a64eea807e134cccd8e |
Size: | 205 KB |
First Published: | 2017-05-25 02:04:17 (7 years ago) |
Latest Published: | 2018-09-27 03:07:29 (6 years ago) |
Status: | Adware.ELEX (on last analysis) | |
Analysis Date: | 2018-09-27 03:07:29 (6 years ago) |
Overview
Signed By: | Junyan Li |
Status: | Valid |
Common Places:
%commonappdata%\ywinpy |
%system%\_twm |
%commonappdata%\dwinpd |
%commonappdata%\ewinpe |
%system% |
%allusersprofile%\\application data |
%sysdrive%\adwcleaner\quarantine\files |
%commonappdata% |
File Names:
WFini.exe |
wpm.exe |
WFini.exe.quarantined |
Geography:
26.7% | ||
20.0% | ||
13.3% | ||
13.3% | ||
6.7% | ||
6.7% | ||
6.7% | ||
6.7% |
OS Version:
Windows 7 | 53.3% | |
Windows 8.1 | 33.3% | |
Windows XP | 13.3% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0000fa54 |
PE Sections:
Name | Size of data | MD5 |
.text | 141824 | 8698e002442503fda8bab39843de034f |
.rdata | 37888 | 5b27dfa4c2bffd95bde6a43611021f60 |
.data | 12288 | 781a3e7d8ba73a7a4c4c8008951af308 |
.rsrc | 11264 | c99d164bb8e4144b9266eca2d00eb0e6 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for wpm.exe