How to remove wpm.exe
wpm.exe
The module wpm.exe has been detected as Adware.ELEX
File Details
Product Name: | WFini |
Company Name: | WFini LIMITED |
MD5: | da70b69e5794eab370c922894b2ef2f3 |
Size: | 551 KB |
First Published: | 2017-05-25 02:04:18 (7 years ago) |
Latest Published: | 2020-12-10 07:01:01 (4 years ago) |
Status: | Adware.ELEX (on last analysis) | |
Analysis Date: | 2020-12-10 07:01:01 (4 years ago) |
Overview
Signed By: | Junyan Li |
Status: | Valid |
Common Places:
%commonappdata%\dwinpd |
%allusersprofile%\\application data\cwinpc |
%system%\_sspm |
%programfiles%\bicsecogugh |
%commonappdata%\mwinpm |
%sysdrive%\windows.old\windows\system32\_sspm |
%commonappdata% |
%system% |
%allusersprofile%\\application data |
%sysdrive%\system volume information\systemrestore\frstaging\program files (x86) |
File Names:
WFini.exe |
wpm.exe |
Geography:
25.0% | ||
12.5% | ||
12.5% | ||
8.3% | ||
8.3% | ||
8.3% | ||
4.2% | ||
4.2% | ||
4.2% | ||
4.2% | ||
4.2% | ||
4.2% |
OS Version:
Windows 7 | 75.0% | |
Windows 10 | 16.7% | |
Windows XP | 4.2% | |
Windows 8 | 4.2% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0004dced |
PE Sections:
Name | Size of data | MD5 |
.text | 439296 | 87d90d288beff99c49982cb8a9b2eafd |
.rdata | 93696 | 3c5a6d9586de85a51cc5f0d24f07145a |
.data | 13312 | 1dc8bb8c9eeb67289b77944a1281a162 |
.rsrc | 11264 | a998b5e2f95145b7f5f2144001fbb45a |
More information:
Download GridinSoft
Anti-Malware - Removal tool for wpm.exe