How to remove Ckrfresh (2022_10_05 05_49_43 UTC).exe
- File Details
- Overview
- Analysis
Ckrfresh (2022_10_05 05_49_43 UTC).exe
The module Ckrfresh (2022_10_05 05_49_43 UTC).exe has been detected as Ransom.Exp
File Details
MD5: |
d7dc58d1e5f9fa847e73c251812fc70a |
Size: |
11 KB |
First Published: |
2025-05-21 23:01:23 (a week ago) |
Latest Published: |
2025-05-28 23:00:57 (3 days ago) |
Status: |
Ransom.Exp (on last analysis) |
|
Analysis Date: |
2025-05-28 23:00:57 (3 days ago) |
%sysdrive%\filehistory\owner\desktop-pl49v2e\data\c\users\owner\pictures\local disk |
%sysdrive%\hp tower desktop files\lenova desktop 10-17-2019 |
%sysdrive%\hp tower desktop files\lenova desktop 10-17-2019 |
%sysdrive%\filehistory\owner\desktop-pl49v2e\data\c\users\owner\pictures\local disk |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000108f |
Name |
Size of data |
MD5 |
.text |
5632 |
f5efef7e9b272434605c3987ac9fbf0b |
.bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.rdata |
512 |
e0419cb3e77cebb5f2859397022b7288 |
.data |
2560 |
c46f50fd3cb4418c4e70ffaf9ff87330 |
.idata |
1024 |
23e52039b4780828418147abe043b34e |
.reloc |
1024 |
04692ea2fa181c92e0791b832e2e74f2 |