How to remove VCap.exe
VCap.exe
The module VCap.exe has been detected as Ransom.Zbot
File Details
| Product Name: | VCap Downloader |
| Company Name: | VCap-developer |
| MD5: | 17f9aab95a6b56247fb0051f995da0bb |
| Size: | 3 MB |
| First Published: | 2022-12-29 23:17:12 (2 years ago) |
| Latest Published: | 2022-12-29 23:17:12 (2 years ago) |
| Status: | Ransom.Zbot (on last analysis) | |
| Analysis Date: | 2022-12-29 23:17:12 (2 years ago) |
Common Places:
| %localappdata% |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x001cdbb5 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 2059264 | 51091aa671cc65131eb58e13300618f5 |
| .rdata | 381440 | 9e51183bc929e1f5784d881b054a520a |
| .data | 57344 | bebde3ae775df58351131f6e5c29aa83 |
| .rsrc | 1412096 | 6a30051118d9bf27977ee35e65bd3f30 |
| .reloc | 118784 | f95ecd49b21c5b422c056da68a0e0220 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for VCap.exe