How to remove Setup-Ro.exe
- File Details
- Overview
- Analysis
Setup-Ro.exe
The module Setup-Ro.exe has been detected as Ransom.Somhoveran
File Details
Product Name: |
|
Company Name: |
|
MD5: |
b634e46e3ed42aef63135b218446025e |
Size: |
499 KB |
First Published: |
2018-10-03 05:07:57 (6 years ago) |
Latest Published: |
2024-07-22 23:01:08 (a year ago) |
Status: |
Ransom.Somhoveran (on last analysis) |
|
Analysis Date: |
2024-07-22 23:01:08 (a year ago) |
%sysdrive%\เกมส์ |
%sysdrive% |
%sysdrive% |
%sysdrive% |
%sysdrive% |
%sysdrive% |
%sysdrive% |
%sysdrive% |
%sysdrive% |
%sysdrive%\จากdesktop\folderทั้งหมดบนdestop |
Windows 10 |
69.2% |
|
Windows 7 |
30.8% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000184ce |
Name |
Size of data |
MD5 |
.text |
139264 |
d5f122a45d5919081d4c665a042d3b6b |
.rdata |
11264 |
e2b60bbae79cb37d9f322cc40673579b |
.data |
16384 |
3af06c51e17aaaa265efe431e92ba1b6 |
.idata |
4608 |
488f52e88543a79897f4d88c8d0b9be8 |
.shared |
1536 |
53e979547d8c2ea86560ac45de08ae25 |
.rsrc |
337408 |
6e8ca439d739a11988275f0d305116f1 |