How to remove R-Unlocker.exe
- File Details
- Overview
- Analysis
R-Unlocker.exe
The module R-Unlocker.exe has been detected as Ransom.Wacatac
File Details
| Product Name: |
|
| MD5: |
4c344ecd80de96700574f72658018431 |
| Size: |
591 KB |
| First Published: |
2021-08-12 20:11:33 (4 years ago) |
| Latest Published: |
2021-08-12 20:13:20 (4 years ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2021-08-12 20:13:20 (4 years ago) |
| %profile%\downloads\r-unlocker_5.1.0__battlepass (1).rar |
| %profile%\downloads\r-unlocker_5.1.0__battlepass.rar |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0009a00a |
| MVID: |
c8b11fe8-4938-409b-bdf5-addf2820bccb |
| Typelib ID: |
43dd063b-a049-44b0-8cd4-8aa776cbedfd |
| Name |
Size of data |
MD5 |
| 9Qj8F8[ |
32768 |
496ed6d9286351713a7ca313c9262b54 |
| .text |
298496 |
f834b1a51f652b4bb788b47e45768aa4 |
| .rsrc |
272384 |
113c2cc8acabe9fda578ea9925f9ea5c |
| .reloc |
512 |
967560dbefb9d95bc9f4a75401f1d020 |
|
512 |
c27370bb96541c92175b65df892348b3 |