How to remove A0000051.exe
- File Details
- Overview
- Analysis
A0000051.exe
The module A0000051.exe has been detected as Ransom.Wacatac
File Details
| MD5: |
07c409296036220261fe94ae423db6ec |
| Size: |
398 KB |
| First Published: |
2025-11-05 23:01:33 (a day ago) |
| Latest Published: |
2025-11-05 23:01:33 (a day ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2025-11-05 23:01:33 (a day ago) |
| %sysdrive%\system volume information\_restore{cd59f2b4-f3b7-40d5-abe0-8964f61bd041} |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00054ea8 |
| Name |
Size of data |
MD5 |
| CODE |
344064 |
fea7325c708abf75c241367662f81a29 |
| DATA |
4608 |
62cf444f69e11f0e1fc00809d390b98c |
| BSS |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .idata |
9216 |
17bc4877ce771f5e6025a1f1021bb035 |
| .tls |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
512 |
68158ee92ebfebdc760bb26fcda21abc |
| .reloc |
24576 |
91ff0dac5df86e798bfef5e573536b08 |
| .rsrc |
23552 |
b3ad785bd6736fcee109119d7307d720 |