How to remove WinHoster.exe
- File Details
- Overview
- Analysis
WinHoster.exe
The module WinHoster.exe has been detected as Ransom.Sabsik
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
235ed7f2feca4ddd51d32b6c7c6ccab2 |
| Size: |
74 KB |
| First Published: |
2021-11-02 21:08:49 (4 years ago) |
| Latest Published: |
2021-12-29 21:52:07 (3 years ago) |
| Status: |
Ransom.Sabsik (on last analysis) |
|
| Analysis Date: |
2021-12-29 21:52:07 (3 years ago) |
| %appdata% |
| %appdata% |
| %appdata% |
| %appdata% |
| %localappdata% |
| %appdata% |
| %localappdata% |
| %localappdata% |
| %localappdata% |
| %localappdata% |
|
46.2% |
|
|
15.4% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
| Windows 10 |
61.5% |
|
| Windows 7 |
38.5% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x0001a00a |
| Name |
Size of data |
MD5 |
| IUP W/w |
28160 |
4df20538b919788cb661ee6806470501 |
| .text |
44032 |
9effa3c00912426ddaa6aa1e4a033292 |
| .rsrc |
1536 |
3b6b47b0e335a4c863bab83ff29bdb04 |
| .reloc |
512 |
aff5b30ceb43f61f913db3abeba94533 |
|
512 |
6164427e46102242e40b0cfacd667c6d |