How to remove C38D.tmp.exe

C38D.tmp.exe

The module C38D.tmp.exe has been detected as Ransom.Wacatac

C38D.tmp.exe
Product Name:

Windows® Internet Explorer

Company Name:

Microsoft Corporation

MD5: cb44bd9079dd26898fbfa7ec53000e19
Size: 1 MB
First Published: 2021-01-07 23:54:26 (4 years ago)
Latest Published: 2021-01-10 04:02:25 (4 years ago)
Status: Ransom.Wacatac (on last analysis)
Analysis Date: 2021-01-10 04:02:25 (4 years ago)
%temp%
%temp%
%temp%
%temp%
66.7%
Windows 7 75.0%
Windows 10 25.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x00006897

PE Sections:

Name Size of data MD5
.text 24576 0e5b7c4ec989bb777c6fbf0a1cd84794
.data 1024 27b3fb2f9d6a275356ae6b7aafacc75e
.idata 4608 b1ebf4cc039d0487028fa3142ea98061
.rsrc 1439232 b4358cec36ecc7dc226b0657786b4722
.reloc 3072 39c45ed74aa4b48de090fbb3b1d93bbb

More information:

Download GridinSoft Anti-Malware - Removal tool for C38D.tmp.exe