How to remove Bienvenida.exe
- File Details
- Overview
- Analysis
Bienvenida.exe
The module Bienvenida.exe has been detected as Ransom.STOP
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
f309b78262ec8b0f7414239a1905dd68 |
| Size: |
11 MB |
| First Published: |
2023-01-26 23:25:10 (2 years ago) |
| Latest Published: |
2025-01-24 23:02:27 (10 months ago) |
| Status: |
Ransom.STOP (on last analysis) |
|
| Analysis Date: |
2025-01-24 23:02:27 (10 months ago) |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
| %sysdrive% |
|
23.5% |
|
|
17.6% |
|
|
11.8% |
|
|
11.8% |
|
|
11.8% |
|
|
5.9% |
|
|
5.9% |
|
|
5.9% |
|
| Windows 10 |
82.4% |
|
| Windows 8.1 |
17.6% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00244f2b |
| Name |
Size of data |
MD5 |
| .text |
4030976 |
48372a2fddf5240e0d09df123a52d31d |
| .rdata |
874496 |
ad2e36a835f25ec941e2562138fde3e0 |
| .data |
148480 |
e57e9c9325c8bb5af6716dec814c194a |
| .rsrc |
1299968 |
27df9496d0f105c625aee74aa45e1fb0 |
| .enigma1 |
4980736 |
f65f8adc6d1f36bd90d6d893ff8347ba |
| .enigma2 |
270336 |
6ab913947f9d420fd9f72844f7ad4526 |