How to remove f423590312.exe
- File Details
- Overview
- Analysis
f423590312.exe
The module f423590312.exe has been detected as Ransom.Wacatac
File Details
| MD5: |
628f6399eff57bdc67c451c0a4ffdc32 |
| Size: |
72 KB |
| First Published: |
2021-11-23 21:18:20 (4 years ago) |
| Latest Published: |
2021-11-23 21:18:20 (4 years ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2021-11-23 21:18:20 (4 years ago) |
| %temp%\rar$exa19300.15153\testdisk-7.1 |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00001005 |
| Name |
Size of data |
MD5 |
| .text |
16384 |
4aec27e117f4e6b19e00bc714a3321cf |
| .rdata |
4096 |
e88c23703bc44a57d4364994732fef67 |
| .data |
12288 |
2113eace5c4edebdfe6c32be085b28d9 |
| .rsrc |
36864 |
b7052bde8aa9da6bdd7058d6bcda4ae2 |