How to remove avimidiconverter32_64.exe
- File Details
- Overview
- Analysis
avimidiconverter32_64.exe
The module avimidiconverter32_64.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
970f3074c7d0144ec9d70ddd4afc9ee5 |
Size: |
4 MB |
First Published: |
2024-07-16 23:06:28 (11 months ago) |
Latest Published: |
2024-07-16 23:06:28 (11 months ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-07-16 23:06:28 (11 months ago) |
%sysdrive%\windows.old\users\micro\appdata\local |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x000b9618 |
Name |
Size of data |
MD5 |
.text |
778240 |
8b7a30a58a584f84c7ffa93c03d805e5 |
_lhead_5 |
16384 |
f9d38b4cbf199556db47396cbbf8ab3b |
.data |
12288 |
7192b361ee2b2cff471b3ab0f9fd7d5b |
.rsrc |
1593344 |
adb5eaf55e6d315ed9ebf7e124e54136 |
_mhead_5 |
2046829 |
91818eb1829e3f303cd1286d9db820a2 |