How to remove f423590312.exe
- File Details
- Overview
- Analysis
f423590312.exe
The module f423590312.exe has been detected as Ransom.Wacatac
File Details
MD5: |
628f6399eff57bdc67c451c0a4ffdc32 |
Size: |
72 KB |
First Published: |
2021-11-23 21:18:20 (2 years ago) |
Latest Published: |
2021-11-23 21:18:20 (2 years ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2021-11-23 21:18:20 (2 years ago) |
%temp%\rar$exa19300.15153\testdisk-7.1 |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001005 |
Name |
Size of data |
MD5 |
.text |
16384 |
4aec27e117f4e6b19e00bc714a3321cf |
.rdata |
4096 |
e88c23703bc44a57d4364994732fef67 |
.data |
12288 |
2113eace5c4edebdfe6c32be085b28d9 |
.rsrc |
36864 |
b7052bde8aa9da6bdd7058d6bcda4ae2 |