How to remove Welcome.exe
- File Details
- Overview
- Analysis
Welcome.exe
The module Welcome.exe has been detected as Ransom.Exp
File Details
Product Name: |
|
Company Name: |
|
MD5: |
4733c766e8464400a891721b28385894 |
Size: |
76 KB |
First Published: |
2020-12-26 16:14:35 (4 years ago) |
Latest Published: |
2020-12-26 16:14:35 (4 years ago) |
Status: |
Ransom.Exp (on last analysis) |
|
Analysis Date: |
2020-12-26 16:14:35 (4 years ago) |
%sysdrive%\recycler\s-1-5-21-1060284298-299502267-1177238915-1003\df1.4 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000015d8 |
Name |
Size of data |
MD5 |
.text |
24576 |
d92c9188e7b45cc47e266365a6c14c53 |
.rdata |
8192 |
02afcd46d6559f53c3cdb8acc01b7691 |
.data |
4096 |
0a155f57c13c65d118be91047b8ec77a |
.rsrc |
36864 |
f9390a9277fe0708707ab802e3053141 |