How to remove WinHoster.exe
- File Details
- Overview
- Analysis
WinHoster.exe
The module WinHoster.exe has been detected as Ransom.Sabsik
File Details
Product Name: |
|
Company Name: |
|
MD5: |
235ed7f2feca4ddd51d32b6c7c6ccab2 |
Size: |
74 KB |
First Published: |
2021-11-02 21:08:49 (3 years ago) |
Latest Published: |
2021-12-29 21:52:07 (3 years ago) |
Status: |
Ransom.Sabsik (on last analysis) |
|
Analysis Date: |
2021-12-29 21:52:07 (3 years ago) |
%appdata% |
%appdata% |
%appdata% |
%appdata% |
%localappdata% |
%appdata% |
%localappdata% |
%localappdata% |
%localappdata% |
%localappdata% |
|
46.2% |
|
|
15.4% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
Windows 10 |
61.5% |
|
Windows 7 |
38.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0001a00a |
Name |
Size of data |
MD5 |
IUP W/w |
28160 |
4df20538b919788cb661ee6806470501 |
.text |
44032 |
9effa3c00912426ddaa6aa1e4a033292 |
.rsrc |
1536 |
3b6b47b0e335a4c863bab83ff29bdb04 |
.reloc |
512 |
aff5b30ceb43f61f913db3abeba94533 |
|
512 |
6164427e46102242e40b0cfacd667c6d |