How to remove LEGOHarryPotter.exe
- File Details
- Overview
- Analysis
LEGOHarryPotter.exe
The module LEGOHarryPotter.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
acecb27199151ca0d8bf0c251b03499e |
Size: |
14 MB |
First Published: |
2024-06-12 23:01:53 (a year ago) |
Latest Published: |
2024-09-21 23:01:42 (9 months ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-09-21 23:01:42 (9 months ago) |
%sysdrive%\steamlibrary\steamapps\common |
%sysdrive%\gry\__steam\steamapps\common |
%sysdrive%\gry\__steam\steamapps\common |
%sysdrive%\steamlibrary\steamapps\common |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00fb52ed |
Name |
Size of data |
MD5 |
.text |
8658944 |
c84bd5ec019ab81bb7fea30371bfac5d |
.rdata |
1835008 |
46ed18544c4a0020aedffa181da098b2 |
.data |
1122304 |
739ee6d11fbb3ecbec95f79742fdd00b |
.idata |
12288 |
48aa92f930cbe04564016f5222e2ad94 |
.shr |
4096 |
620f0b67a91f7f74151bc5be745b7110 |
CONST |
4096 |
2737c30da3b5fec5eccddcbec164f1e4 |
.rsrc |
2957312 |
e9e619ec3341347f7c817003dabd11c3 |
.bind |
352256 |
69421e9ae9ee9bf60205e7b4554a70b9 |