How to remove ucppahelper.exe
- File Details
- Overview
- Analysis
ucppahelper.exe
The module ucppahelper.exe has been detected as PUP.UCBrowser
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
4db1654048a8745cfdf47b5b54573b31 |
| Size: |
1 MB |
| First Published: |
2017-05-21 03:02:07 (8 years ago) |
| Latest Published: |
2025-04-12 23:02:31 (7 months ago) |
| Status: |
PUP.UCBrowser (on last analysis) |
|
| Analysis Date: |
2025-04-12 23:02:31 (7 months ago) |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.1.0_0\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.3_0\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.1.0_1\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.1_0\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.2_0\bin\pphelper |
| %profile%\dministrator\local settings\application data\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.1.0_0\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.1_1\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.3_1\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.0_0\bin\pphelper |
| %localappdata%\ucbrowser\user data\default\extensions\pbnmnlipmkfkadfcdocgblonoccmolpe\3.0.0_1\bin\pphelper |
|
19.5% |
|
|
17.1% |
|
|
13.1% |
|
|
6.1% |
|
|
5.6% |
|
|
4.8% |
|
|
3.5% |
|
|
2.9% |
|
|
2.6% |
|
|
2.1% |
|
|
1.8% |
|
|
1.2% |
|
|
1.2% |
|
|
1.2% |
|
|
1.1% |
|
|
1.0% |
|
|
0.8% |
|
|
0.8% |
|
|
0.8% |
|
|
0.7% |
|
|
0.7% |
|
|
0.7% |
|
|
0.6% |
|
|
0.5% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.4% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.3% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.2% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
|
0.1% |
|
| Windows 7 |
49.8% |
|
| Windows 10 |
41.5% |
|
| Windows 8.1 |
7.1% |
|
| Windows 8 |
1.1% |
|
| Windows Vista |
0.2% |
|
| Windows XP |
0.1% |
|
| Windows Embedded 8.1 |
0.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000ba42f |
| Name |
Size of data |
MD5 |
| .text |
937984 |
94ee86c556a30833315b1318511a4c7c |
| .rdata |
299008 |
c9e4db4b749825e46e72897889a427a9 |
| .data |
270848 |
f32e364cf18b327b0bc50622f526b2c3 |
| .rsrc |
38400 |
056732d31047903539de31153af2dab8 |
| .reloc |
109056 |
1d5cdd5803a8cfedde088d7ed3617352 |