How to remove default_bonus[1].exe
- File Details
- Overview
- Analysis
default_bonus[1].exe
The module default_bonus[1].exe has been detected as Ransom.STOP
File Details
Product Name: |
|
Company Name: |
|
MD5: |
69dba4835f8b0504d40468044cd7e475 |
Size: |
6 MB |
First Published: |
2024-05-29 23:17:28 (a year ago) |
Latest Published: |
2024-05-30 23:01:10 (a year ago) |
Status: |
Ransom.STOP (on last analysis) |
|
Analysis Date: |
2024-05-30 23:01:10 (a year ago) |
Overview
%localappdata%\microsoft\windows\inetcache\ie |
%mydoc% |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x004ab320 |
Name |
Size of data |
MD5 |
.text |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.rdata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.data |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.vmp¾° |
0 |
d41d8cd98f00b204e9800998ecf8427e |
.vmp¾° |
1536 |
ba156d82ebef7a07b13b08ef4df60815 |
.vmp¾° |
7013376 |
bae895647ee8941d220f219c1b43cebc |
.reloc |
2048 |
db5c31749c1c8887236ff21f6e16efb6 |
.rsrc |
164352 |
de79bba231435a0ed6065b50619d1542 |