How to remove Microsoft.exe
- File Details
- Overview
- Analysis
Microsoft.exe
The module Microsoft.exe has been detected as Ransom.Gen
File Details
Product Name: |
|
Company Name: |
|
MD5: |
6dcc9a97a3f8c7f3051a31c1ab4dc58f |
Size: |
7 MB |
First Published: |
2023-05-06 23:50:47 (2 years ago) |
Latest Published: |
2024-09-12 23:01:07 (10 months ago) |
Status: |
Ransom.Gen (on last analysis) |
|
Analysis Date: |
2024-09-12 23:01:07 (10 months ago) |
%windir% |
%windir% |
%windir% |
%windir% |
%windir% |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000000400000 |
Entry Address: |
0x000014f0 |
Name |
Size of data |
MD5 |
.text |
5709824 |
f29e2816ebd119df8a0534e8327f5867 |
.data |
66560 |
2ff222a29636ffbc3d6cf9eacea90036 |
.rdata |
1193472 |
71bca50d3f291b9ee9c8480c86cc1086 |
.pdata |
187392 |
eb00eaafde43dc30d1fd8f4f9a4b60b6 |
.xdata |
233472 |
872b257ac84e31e3b1e5960bc9682107 |
.bss |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.idata |
18432 |
db53694cf69667573c773bf2b907271a |
.CRT |
512 |
86000e097d0a61f89d18bd4f8d982bad |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
70144 |
bbb42f7d842802c4089f4915ab8d09bf |