How to remove XLLiveUD.exe

XLLiveUD.exe

The module XLLiveUD.exe has been detected as Ransom.Wacatac

XLLiveUD.exe
Product Name:

迅雷升级程序

Company Name:

深圳市迅雷网络技术有限公司

MD5: 58f171ed2dd8530d9e6f59f841933f8a
Size: 4 MB
First Published: 2022-09-07 23:21:49 (2 years ago)
Latest Published: 2024-04-02 23:05:30 (2 weeks ago)
Status: Ransom.Wacatac (on last analysis)
Analysis Date: 2024-04-02 23:05:30 (2 weeks ago)
%programfiles%\thunder network\thunder
%programfiles%\thunder network\thunder
%temp%\xlliveud
%temp%\xlliveud
%temp%\xlliveud
%temp%\xlliveud
%temp%\xlliveud
%sysdrive%\thunder
%temp%\xlliveud
%temp%\xlliveud
28.6%
28.6%
17.9%
17.9%
7.1%
Windows 10 92.9%
Windows 7 7.1%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000b4cb8

PE Sections:

Name Size of data MD5
.text 915968 83edfbc5b3a7a542bd0fef53117300f2
.rdata 186880 fee027cc39ba98bd6d9ffb86f36dbff5
.data 10240 2a2f585f64864ce69dd143d58a20140b
.rsrc 3976192 7464eb952f0685b21c75401fc8b92515
.reloc 46592 50ae8df7f6c2310bea0e7521d8af55bd

More information:

Download GridinSoft Anti-Malware - Removal tool for XLLiveUD.exe