How to remove default_bonus[1].exe
- File Details
- Overview
- Analysis
default_bonus[1].exe
The module default_bonus[1].exe has been detected as Ransom.STOP
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
69dba4835f8b0504d40468044cd7e475 |
| Size: |
6 MB |
| First Published: |
2024-05-29 23:17:28 (2 years ago) |
| Latest Published: |
2024-05-30 23:01:10 (2 years ago) |
| Status: |
Ransom.STOP (on last analysis) |
|
| Analysis Date: |
2024-05-30 23:01:10 (2 years ago) |
Overview
| %localappdata%\microsoft\windows\inetcache\ie |
| %mydoc% |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x004ab320 |
| Name |
Size of data |
MD5 |
| .text |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .rdata |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .data |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp¾° |
0 |
d41d8cd98f00b204e9800998ecf8427e |
| .vmp¾° |
1536 |
ba156d82ebef7a07b13b08ef4df60815 |
| .vmp¾° |
7013376 |
bae895647ee8941d220f219c1b43cebc |
| .reloc |
2048 |
db5c31749c1c8887236ff21f6e16efb6 |
| .rsrc |
164352 |
de79bba231435a0ed6065b50619d1542 |