How to remove UltraISO_Downloadly.ir.exe
- File Details
- Overview
- Analysis
UltraISO_Downloadly.ir.exe
The module UltraISO_Downloadly.ir.exe has been detected as Ransom.Banker
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
6639b6887e2cad435a7d4827fa41fb27 |
| Size: |
16 MB |
| First Published: |
2022-08-08 23:28:10 (3 years ago) |
| Latest Published: |
2026-01-29 23:05:33 (a month ago) |
| Status: |
Ransom.Banker (on last analysis) |
|
| Analysis Date: |
2026-01-29 23:05:33 (a month ago) |
| %desktop%\programas\formatear discos\ultraiso_premium_edition_9.7.6.3812_multilingual_portable_downloadly.ir.rar |
| %desktop%\click\ultraiso premium 9.7.6.3829 + portable |
| %profile%\downloads |
| %profile%\downloads\ultraiso_premium_edition_9.7.6.3812_multilingual_portable_downloadly.ir |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x66200000 |
| Entry Address: |
0x00001448 |
| Name |
Size of data |
MD5 |
| .text |
110080 |
27c4801c2a2ef4463f7586ceaabdcf25 |
| .rdata |
36352 |
cdc1e82fb4e697eef4b3591a75dfa1cf |
| .data |
156672 |
08a4c7709986dcb3b415ad1858abaa43 |
| .rsrc |
152064 |
a839c08aad49b577b3fe53b5c4976ea3 |