How to remove 4t-min64.exe
- File Details
- Overview
- Analysis
4t-min64.exe
The module 4t-min64.exe has been detected as Ransom.Locky
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
7bc3aeedc18717d796f1c7ff8dbf0c17 |
| Size: |
269 KB |
| First Published: |
2018-09-14 18:13:54 (7 years ago) |
| Latest Published: |
2025-11-18 23:01:06 (5 days ago) |
| Status: |
Ransom.Locky (on last analysis) |
|
| Analysis Date: |
2025-11-18 23:01:06 (5 days ago) |
| %programfiles% |
| %sysdrive%\!program files (x86) |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
|
17.1% |
|
|
9.8% |
|
|
9.8% |
|
|
7.3% |
|
|
7.3% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
4.9% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
|
2.4% |
|
| Windows 10 |
67.4% |
|
| Windows 7 |
27.9% |
|
| Windows 8.1 |
4.7% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000000400000 |
| Entry Address: |
0x0000f9c0 |
| Name |
Size of data |
MD5 |
| .text |
222720 |
ea009e34a7f9e3379a04de90035839e6 |
| .data |
47104 |
253de777b390fe3c4729438df3170186 |
| .bss |
0 |
00000000000000000000000000000000 |
| .idata |
4096 |
29a49a5963e9356c2ae4ab0700b397d0 |
| .rsrc |
1024 |
3b6a76e7ee996d2d89ae2e492f1efff8 |