How to remove Passper for RAR.exe
- File Details
- Overview
- Analysis
Passper for RAR.exe
The module Passper for RAR.exe has been detected as Ransom.Zbot
File Details
Product Name: |
|
Company Name: |
|
MD5: |
684f31251ae08647e8ed6e53dd1b0926 |
Size: |
369 KB |
First Published: |
2023-03-21 23:03:02 (2 years ago) |
Latest Published: |
2023-03-21 23:21:25 (2 years ago) |
Status: |
Ransom.Zbot (on last analysis) |
|
Analysis Date: |
2023-03-21 23:21:25 (2 years ago) |
%programfiles%\passper |
%profile%\downloads\passper for rar 3.7.0.1 multilingual [pesktop.com]\passper for rar 3.7.0.1 multilingual [pesktop.com] |
%programfiles%\passper |
%profile%\downloads\passper for rar 3.7.0.1 multilingual [pesktop.com]\passper for rar 3.7.0.1 multilingual [pesktop.com] |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0019d4c5 |
Name |
Size of data |
MD5 |
.MPRESS1 |
260608 |
c188c27cea07b21e6a2eb2f84248bf39 |
.MPRESS2 |
4608 |
1ba681533ac584d36ee12c21abf94bff |
.rsrc |
112640 |
5147926901a2481dfe2cfc93edfb0c94 |