How to remove KMS Tools Unpack.exe
- File Details
- Overview
- Analysis
KMS Tools Unpack.exe
The module KMS Tools Unpack.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
8deb08d4660b552165d599215bb1a372 |
Size: |
5 MB |
First Published: |
2024-06-09 23:02:24 (a year ago) |
Latest Published: |
2024-06-09 23:02:24 (a year ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-06-09 23:02:24 (a year ago) |
%sysdrive%\drivers backup\kmstools_05.03.2024 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00878dc0 |
Name |
Size of data |
MD5 |
|
391680 |
cb481a8391e671559920c7bda2951204 |
|
60928 |
464e4d43dd92ada5db8047a5c50455d1 |
|
1024 |
b121fa2c7619066e199da7c0f750a566 |
|
16896 |
19941786538db3b695f5b5afeb584f23 |
|
182272 |
cf235828331b66172c9a0a2e87e8724f |
|
2048 |
2e5b48e285dd7248386f9275054a15c3 |
.idata |
1536 |
f734f696a6a960d5524bda12d97a5f60 |
.tls |
512 |
e5dc33a9c4698fa40ba4777d03b7f5ce |
.rsrc |
202240 |
060fd43335e5cd1d7c249a86dabc62fa |
.themida |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.boot |
4948480 |
897907d432650cc66528a637fbd305c2 |
.reloc |
16 |
f0d328be08ad9f8b82f1f49db1d748d0 |