How to remove A0086958.exe
- File Details
- Overview
- Analysis
A0086958.exe
The module A0086958.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
75a3e359fbbcc3f88a8775d95acb9e26 |
Size: |
628 KB |
First Published: |
2023-07-02 23:06:22 (2 years ago) |
Latest Published: |
2025-05-07 23:01:32 (3 months ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2025-05-07 23:01:32 (3 months ago) |
%sysdrive%\system volume information\_restore{016a391c-2f6c-4a7c-ba9f-91b8178ad237} |
%programfiles% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000380a8 |
Name |
Size of data |
MD5 |
.text |
260096 |
7a7966b93511af23c10e3713948f7721 |
.rdata |
11264 |
a5a7cc97835c151e0e338f3d8e624ef3 |
.data |
36352 |
73af74f7f159e50e1771251d936010cf |
.rsrc |
334336 |
a4955b72e70d9561099e9b078608ef01 |