How to remove 5JPREY0WD0Z6H5DQ0BUE1.exe
- File Details
- Overview
- Analysis
5JPREY0WD0Z6H5DQ0BUE1.exe
The module 5JPREY0WD0Z6H5DQ0BUE1.exe has been detected as Ransom.Blocker
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
edfb8c316e4d775c081eb646378a9713 |
| Size: |
2 MB |
| First Published: |
2024-05-29 23:06:20 (a year ago) |
| Latest Published: |
2024-05-29 23:06:21 (a year ago) |
| Status: |
Ransom.Blocker (on last analysis) |
|
| Analysis Date: |
2024-05-29 23:06:21 (a year ago) |
Overview
| Signed By: |
Rons Place Software |
| Status: |
Invalid (digital signature could be stolen or file could be patched) |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0028ac5e |
| MVID: |
dbe08e3f-9680-677f-c80c-14e2fc4293aa |
| Typelib ID: |
776c6631-0fbf-4785-9c54-fda821204ce1 |
| Name |
Size of data |
MD5 |
| .text |
2657792 |
62b1015a79db6e058cabc2b2e41d55c0 |
| .rsrc |
20480 |
7cbab3f8b766fc6022ada6a3ebdf5a88 |
| .reloc |
512 |
031fab47e3f6bf6a695bc414a9e90cbe |