How to remove 4t-min64.exe
- File Details
- Overview
- Analysis
4t-min64.exe
The module 4t-min64.exe has been detected as Ransom.Locky
File Details
Product Name: |
|
Company Name: |
|
MD5: |
7bc3aeedc18717d796f1c7ff8dbf0c17 |
Size: |
269 KB |
First Published: |
2018-09-14 18:13:54 (6 years ago) |
Latest Published: |
2025-04-04 23:01:16 (a day ago) |
Status: |
Ransom.Locky (on last analysis) |
|
Analysis Date: |
2025-04-04 23:01:16 (a day ago) |
%programfiles% |
%sysdrive%\!program files (x86) |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
%programfiles% |
|
18.9% |
|
|
10.8% |
|
|
10.8% |
|
|
8.1% |
|
|
8.1% |
|
|
5.4% |
|
|
5.4% |
|
|
5.4% |
|
|
5.4% |
|
|
5.4% |
|
|
5.4% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
|
2.7% |
|
Windows 10 |
64.1% |
|
Windows 7 |
30.8% |
|
Windows 8.1 |
5.1% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x0000f9c0 |
Name |
Size of data |
MD5 |
.text |
222720 |
ea009e34a7f9e3379a04de90035839e6 |
.data |
47104 |
253de777b390fe3c4729438df3170186 |
.bss |
0 |
00000000000000000000000000000000 |
.idata |
4096 |
29a49a5963e9356c2ae4ab0700b397d0 |
.rsrc |
1024 |
3b6a76e7ee996d2d89ae2e492f1efff8 |