How to remove RansomwareDefender.exe
- File Details
- Overview
- Analysis
RansomwareDefender.exe
The module RansomwareDefender.exe has been detected as PUP.ShieldApps
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
77b801eede0af2adba1dac8858f44b4c |
| Size: |
2 MB |
| First Published: |
2019-05-24 23:09:51 (6 years ago) |
| Latest Published: |
2022-05-01 23:23:20 (3 years ago) |
| Status: |
PUP.ShieldApps (on last analysis) |
|
| Analysis Date: |
2022-05-01 23:23:20 (3 years ago) |
Overview
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
| %programfiles% |
|
29.9% |
|
|
10.4% |
|
|
7.5% |
|
|
7.5% |
|
|
6.0% |
|
|
6.0% |
|
|
6.0% |
|
|
4.5% |
|
|
4.5% |
|
|
4.5% |
|
|
3.0% |
|
|
3.0% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
|
1.5% |
|
| Windows 10 |
79.5% |
|
| Windows 8.1 |
16.4% |
|
| Windows 7 |
4.1% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00234f52 |
| MVID: |
0bbdff7b-a35f-457b-a610-438eb3e58af0 |
| Typelib ID: |
c1ba02b1-e718-4e2b-84e8-e2e4193c4420 |
| Name |
Size of data |
MD5 |
| .text |
2306048 |
0cba51186c467c99d9e654cb3e66882b |
| .reloc |
512 |
5793d84c55ebd0ca891fa2b5978a9178 |
| .rsrc |
104448 |
31ac8b59d80e637e487f8a54e2f0241c |