How to remove XLLiveUD.exe
- File Details
- Overview
- Analysis
XLLiveUD.exe
The module XLLiveUD.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
58f171ed2dd8530d9e6f59f841933f8a |
Size: |
4 MB |
First Published: |
2022-09-07 23:21:49 (2 years ago) |
Latest Published: |
2024-09-09 23:01:46 (a week ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-09-09 23:01:46 (a week ago) |
Overview
%programfiles%\thunder network\thunder |
%programfiles%\thunder network\thunder |
%temp%\xlliveud |
%temp%\xlliveud |
%temp%\xlliveud |
%temp%\xlliveud |
%temp%\xlliveud |
%sysdrive%\thunder |
%temp%\xlliveud |
%temp%\xlliveud |
|
29.7% |
|
|
24.3% |
|
|
21.6% |
|
|
16.2% |
|
|
5.4% |
|
|
2.7% |
|
Windows 10 |
94.6% |
|
Windows 7 |
5.4% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000b4cb8 |
Name |
Size of data |
MD5 |
.text |
915968 |
83edfbc5b3a7a542bd0fef53117300f2 |
.rdata |
186880 |
fee027cc39ba98bd6d9ffb86f36dbff5 |
.data |
10240 |
2a2f585f64864ce69dd143d58a20140b |
.rsrc |
3976192 |
7464eb952f0685b21c75401fc8b92515 |
.reloc |
46592 |
50ae8df7f6c2310bea0e7521d8af55bd |