How to remove 839E.exe
839E.exe
The module 839E.exe has been detected as Ransom.Wacatac
File Details
| Product Name: | WinFsp |
| Company Name: | Navimatics LLC |
| MD5: | c6c28128200eb59c1d37229a6bf8a713 |
| Size: | 4 MB |
| First Published: | 2022-06-05 23:59:55 (3 years ago) |
| Latest Published: | 2022-06-08 23:18:13 (3 years ago) |
| Status: | Ransom.Wacatac (on last analysis) | |
| Analysis Date: | 2022-06-08 23:18:13 (3 years ago) |
Overview
| Signed By: | Logitech ZC-9016 USA State of Washington |
| Status: | Valid |
Common Places:
| %temp% |
| %temp% |
| %temp% |
Geography:
| 33.3% | ||
| 33.3% | ||
| 33.3% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0028ee75 |
PE Sections:
| Name | Size of data | MD5 |
| 184320 | 28ce0ddbb58f7c30338d538cfeb175b0 | |
| 1536 | eaed9e8ae39595ad5929f7d614a463b9 | |
| .rsrc | 476672 | a1ded6ef22758c9ad5aee6b9aee7248e |
| 512 | 41017814e91060156b14a62d02293560 | |
| .idata | 512 | 14337f0cbfff637e7718b361a3813fa1 |
| .themida | 3891200 | 82fed143ca2f0d9f55f0cbce6cc97d70 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for 839E.exe