How to remove aapt.exe
aapt.exe
The module aapt.exe has been detected as Ransom.Wacatac

File Details
MD5: | 76679c69f3849232637b9b61fc8bb792 |
Size: | 798 KB |
First Published: | 2017-05-21 04:03:04 (7 years ago) |
Latest Published: | 2024-09-08 23:01:09 (5 months ago) |
Status: | Ransom.Wacatac (on last analysis) | |
Analysis Date: | 2024-09-08 23:01:09 (5 months ago) |
Common Places:
%appdata%\ldsgameassistant |
%programfiles%\ludashi |
%programfiles%\leyoubox\cache\apk |
%programfiles%\youxunbox\cache\apk |
%programfiles%\ludashi\update |
%programfiles% |
%appdata% |
%programfiles%\youxunbox\cache |
%programfiles%\leyoubox\cache |
%programfiles% |
Geography:
33.6% | ||
32.0% | ||
9.0% | ||
3.1% | ||
3.1% | ||
2.3% | ||
2.3% | ||
1.6% | ||
1.6% | ||
1.2% | ||
1.2% | ||
1.2% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.8% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% | ||
0.4% |
OS Version:
Windows 10 | 66.9% | |
Windows 7 | 26.5% | |
Windows 8.1 | 3.1% | |
Windows 8 | 1.9% | |
Windows XP | 0.8% | |
Windows Embedded 8.1 | 0.4% | |
Windows Server 2008 R2 | 0.4% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x00001130 |
PE Sections:
Name | Size of data | MD5 |
.text | 672256 | 9e430c66e6a7887852dad378b9fe9ffc |
.data | 16896 | 82c839d3b419b6932f8c985f1b5be75f |
.rdata | 123904 | d04577d5f74db66edf06e3cf14a04cc1 |
.bss | 0 | 00000000000000000000000000000000 |
.idata | 3584 | 62b9bb2f9fa7d934168647c98ac778fa |
More information:
Download GridinSoft
Anti-Malware - Removal tool for aapt.exe
