How to remove WPI.exe
WPI.exe
The module WPI.exe has been detected as Ransom.Wacatac

File Details
Product Name: | Windows Post-Install Wizard |
Company Name: | Windows Post-Install Wizard |
MD5: | 0c2f9f1a5dc481e3ea94735879d4b98d |
Size: | 130 KB |
First Published: | 2023-08-16 23:26:18 (2 years ago) |
Latest Published: | 2023-08-16 23:43:54 (2 years ago) |
Status: | Ransom.Wacatac (on last analysis) | |
Analysis Date: | 2023-08-16 23:43:54 (2 years ago) |
Common Places:
%desktop%\папка большая 18.03.2023\desktop\0000\нсп-все архивы\win7u\папка win7\win7 реаниматор |
%desktop%\старые папки уже перенесенные\главные архивы\главное - windows 7-10\w7 недавно скаченные\win 7реан-макс\win7 реаниматор |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows GUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00001363 |
PE Sections:
Name | Size of data | MD5 |
.text | 2560 | ca908013ba6c0ee7cb3072206f77e406 |
.data | 4096 | 6ec1ca6fda7235f2612d15f5d5c9f21f |
.rsrc | 125952 | c62e97e6fccbcbf636093a3c7001f3f0 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for WPI.exe
