How to remove Avengers.exe
- File Details
- Overview
- Analysis
Avengers.exe
The module Avengers.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
1784fd66059ff3ee715231c6f775d6fc |
Size: |
14 MB |
First Published: |
2020-02-16 08:04:54 (5 years ago) |
Latest Published: |
2021-01-12 14:56:47 (4 years ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2021-01-12 14:56:47 (4 years ago) |
%sysdrive%\avengers |
%sysdrive%\avengers |
%sysdrive%\avengers |
%sysdrive%\avengers |
%sysdrive%\avengers |
%sysdrive%\avengers |
%sysdrive%\avengers |
%sysdrive%\avengers |
Windows 10 |
50.0% |
|
Windows 7 |
37.5% |
|
Windows 8.1 |
12.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x01bf1dbc |
Name |
Size of data |
MD5 |
CODE |
0 |
00000000000000000000000000000000 |
DATA |
0 |
00000000000000000000000000000000 |
BSS |
0 |
00000000000000000000000000000000 |
.idata |
0 |
00000000000000000000000000000000 |
.tls |
0 |
00000000000000000000000000000000 |
.rdata |
0 |
00000000000000000000000000000000 |
.upx0 |
0 |
00000000000000000000000000000000 |
.upx1 |
15181824 |
b49b6dc65b7d01777163ac79f2e7e3f4 |
.rsrc |
384512 |
fe4ae204a9267ac9ba42c4aa16592aa1 |