How to remove 146D.exe
146D.exe
The module 146D.exe has been detected as Ransom.Wacatac
File Details
| Product Name: | youcoolmaincampus |
| MD5: | 74fdc3abcfc89cca5d9bfcf93eed1845 |
| Size: | 6 MB |
| First Published: | 2024-03-08 23:13:20 (2 years ago) |
| Latest Published: | 2024-03-08 23:13:20 (2 years ago) |
| Status: | Ransom.Wacatac (on last analysis) | |
| Analysis Date: | 2024-03-08 23:13:20 (2 years ago) |
Overview
| Signed By: | MobiSystems, Inc. |
| Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
| %temp% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x006310ee |
PE Sections:
| Name | Size of data | MD5 |
| .text | 6484480 | 79e60f5393ed47dc03c17fef49e75d6c |
| .rsrc | 163328 | 7bcea5a4cfda618c6e0651dcb35f019a |
| .reloc | 512 | ab36264848e4dad4e0d040c164f961f6 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 146D.exe