How to remove 6h4goqc6cz[1].exe
- File Details
- Overview
- Analysis
6h4goqc6cz[1].exe
The module 6h4goqc6cz[1].exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
21dfbd0525256cc77441d7f8e44a4021 |
Size: |
259 KB |
First Published: |
2024-09-07 23:00:45 (9 months ago) |
Latest Published: |
2024-09-07 23:00:45 (9 months ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-09-07 23:00:45 (9 months ago) |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00009a6f |
Name |
Size of data |
MD5 |
.text |
137728 |
c095cbbc3d8ccd93038be5aca6e6fefd |
.data |
93184 |
860d99335119b1ae827a931f9f6b6d83 |
.dosirag |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
32768 |
9c0fb5bc14d2f409a59a98aa6845f66b |