How to remove E_S50RN7.EXE
- File Details
- Overview
- Analysis
E_S50RN7.EXE
The module E_S50RN7.EXE has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
12bb67cf96b3d88fe1c5d5b591d811af |
Size: |
212 KB |
First Published: |
2022-03-25 23:09:05 (3 years ago) |
Latest Published: |
2022-04-18 23:19:54 (3 years ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2022-04-18 23:19:54 (3 years ago) |
%system%\driverstore\filerepository\e_df1ggb.inf_x86_neutral_a28ec51aed9d21ae |
%system%\spool\drivers\w32x86 |
%temp%\wzse1.tmp\common\printer\winx86 |
Windows 8 |
66.7% |
|
Windows 10 |
33.3% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x01000000 |
Entry Address: |
0x00009533 |
Name |
Size of data |
MD5 |
.text |
196096 |
e765d711460387328326fd2ebe1ae452 |
.data |
5632 |
03957f606fa66ae7d39eb55296d3a4a6 |
.rsrc |
3072 |
d96132131ce5a5031f546898cd366bd1 |
.reloc |
11776 |
7d817d4406cdea6d0917fb2493b6fe2f |