How to remove JadeHe.dat
JadeHe.dat
The module JadeHe.dat has been detected as Adware.Funshion
File Details
| Product Name: | JadeHe |
| Company Name: | Funshion Online Technologies Ltd. |
| MD5: | 8071a3402f18e56a1824e9a496fb73f2 |
| Size: | 525 KB |
| First Published: | 2017-05-26 14:11:33 (8 years ago) |
| Latest Published: | 2024-11-23 23:01:31 (11 months ago) |
| Status: | Adware.Funshion (on last analysis) | |
| Analysis Date: | 2024-11-23 23:01:31 (11 months ago) |
Overview
| Signed By: | Beijing Funshion Online Technologies Ltd. |
| Status: | Valid |
Common Places:
| %profile%\fundata |
| %appdata%\ahoweverd |
| %appdata%\aanothe |
| %appdata%\aglennan |
| %appdata%\aaodemm |
| %appdata%\aincrease |
| %appdata%\funmini |
| %appdata%\alemon |
| %appdata%\ablare |
| %appdata%\acruiser |
File Names:
| JadeHe.dll |
| JadeHe.dat |
Geography:
| 73.0% | ||
| 22.6% | ||
| 3.1% | ||
| 0.6% | ||
| 0.6% |
OS Version:
| Windows 7 | 67.9% | |
| Windows 10 | 21.4% | |
| Windows 8.1 | 8.2% | |
| Windows XP | 1.9% | |
| Windows Server 2008 R2 | 0.6% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x10000000 |
| Entry Address: | 0x0004071e |
PE Sections:
| Name | Size of data | MD5 |
| .text | 398848 | d6fa2e4237e9daa965092e3bbfc70a6a |
| .rdata | 80384 | 25be0bc9ca42f9d22404bc44fe55006b |
| .data | 8192 | 414e538bac2c37448469a2368a083e8f |
| .rsrc | 1536 | 2c4672eec573834925769b1b8863bb96 |
| .reloc | 41984 | 43211b3bb5fc66041f453982a37cb78c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for JadeHe.dat