How to remove Welcome.exe
- File Details
- Overview
- Analysis
Welcome.exe
The module Welcome.exe has been detected as Ransom.Exp
File Details
Product Name: |
|
Company Name: |
|
MD5: |
7d0399a0b4275c93164f0cc4564b59c7 |
Size: |
68 KB |
First Published: |
2020-06-16 23:10:54 (4 years ago) |
Latest Published: |
2020-06-16 23:10:54 (4 years ago) |
Status: |
Ransom.Exp (on last analysis) |
|
Analysis Date: |
2020-06-16 23:10:54 (4 years ago) |
%sysdrive%\c - 17-02-2020\users\administrator\downloads\pinnacle pctv pro 5.9 + serial + activation mpeg2 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0000155a |
Name |
Size of data |
MD5 |
.text |
20480 |
79356fca24879f7c4cc0766e306657d8 |
.rdata |
4096 |
fecc05a88d4e3c7adb1f08ce2f8efcd4 |
.data |
12288 |
8ecfcc62821fafab2584660e666e436b |
.rsrc |
28931 |
348386b4a093311d02460fcaa0bedf00 |