How to remove Dixosejycu.exe
- File Details
- Overview
- Analysis
Dixosejycu.exe
The module Dixosejycu.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
028ecc5fb2ccb874c010aad3a4da7633 |
Size: |
346 KB |
First Published: |
2022-06-08 23:08:34 (3 years ago) |
Latest Published: |
2022-06-12 23:05:18 (3 years ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2022-06-12 23:05:18 (3 years ago) |
%sysdrive%\system volume information\systemrestore\frstaging\users\soporte tecnico\appdata\local\temp |
%sysdrive%\$recycle.bin\s-1-5-21-2670754273-1329201681-2934943714-1001 |
%temp% |
Windows 10 |
66.7% |
|
Windows 7 |
33.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0004c46e |
MVID: |
2b7025e8-1eb9-4821-a6ee-249c2289f5f3 |
Typelib ID: |
f37b8b02-014f-4661-bd39-e7b4f88132be |
Name |
Size of data |
MD5 |
.text |
304640 |
637d1d1be8b800b65599a3d61cce6b85 |
.sdata |
1024 |
88a36d68d1a86a4c2d4ed11cadc0f1ed |
.rsrc |
47104 |
ff363272dda74f8bcae13ad9aab0845e |
.reloc |
512 |
a92c9065b6d808f933225fa6676b5f16 |