How to remove 0Wk13uJhIurwK9ooD1wXOQGu.exe
- File Details
- Overview
- Analysis
0Wk13uJhIurwK9ooD1wXOQGu.exe
The module 0Wk13uJhIurwK9ooD1wXOQGu.exe has been detected as Ransom.Wacatac
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
dcae30e7ec4143df978db719a241bb2e |
| Size: |
2 MB |
| First Published: |
2024-02-13 23:01:43 (2 years ago) |
| Latest Published: |
2024-06-29 23:02:16 (a year ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2024-06-29 23:02:16 (a year ago) |
Overview
| Signed By: |
GOG sp. z o.o |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
| %mydoc% |
| %mydoc% |
| %mydoc% |
| %mydoc% |
| %mydoc% |
| %mydoc% |
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0000cd2f |
| Name |
Size of data |
MD5 |
| .text |
104448 |
6b79e0a3e6e2939feebac270fc1fa717 |
| .rdata |
28160 |
5826801f33fc1b607aa8e942aa92e9fa |
| .data |
5632 |
2fe51a72ede820cd7cf55a77ba59b1f4 |
| .rsrc |
2446336 |
da9fb3064c087f61fafa0dcd626e6e4e |