How to remove Setup.exe
Setup.exe
The module Setup.exe has been detected as Ransom.Wacatac
File Details
| Product Name: | LLVM |
| MD5: | 92832398e4b0c35312f646f1b1bab5af |
| Size: | 14 MB |
| First Published: | 2023-07-13 23:44:46 (2 years ago) |
| Latest Published: | 2023-07-13 23:45:59 (2 years ago) |
| Status: | Ransom.Wacatac (on last analysis) | |
| Analysis Date: | 2023-07-13 23:45:59 (2 years ago) |
Overview
| Signed By: | Microsoft 3rd Party Application Component |
| Status: | Invalid (digital signature could be stolen or file could be patched) |
Common Places:
| %profile%\downloads\appsetup_update-launcher |
| %programfiles%\enigmasoft |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | 0x0000000140000000 |
| Entry Address: | 0x002d6fbc |
PE Sections:
| Name | Size of data | MD5 |
| .text | 3132416 | df6535c463e2cc054e40f64b383b7b09 |
| .rdata | 958464 | aedf02e4a23d94f0abfd4b8be6c97d0d |
| .data | 18944 | 1f6b4cc1f9aa811ddaf629752e438cfa |
| .pdata | 129536 | deed7da1d3f7be06e547d561296ec723 |
| _RDATA | 512 | fda78ff15ef6b9b82f58376344fe046b |
| .rsrc | 10696192 | 5ac34bc9bfffa24c967b9780811159ef |
| .reloc | 33280 | 4150ab889fc1944d749390ee513d8d3c |
More information:
Download GridinSoft
Anti-Malware - Removal tool for Setup.exe