How to remove ffjiomedk.exe
- File Details
- Overview
- Analysis
ffjiomedk.exe
The module ffjiomedk.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
3deb273a5df63c3f43ffd66365ceed8c |
Size: |
998 KB |
First Published: |
2023-06-22 23:30:30 (2 years ago) |
Latest Published: |
2023-06-22 23:30:30 (2 years ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2023-06-22 23:30:30 (2 years ago) |
%sysdrive%\windows.old\users\fam. rivas\appdata\local\temp |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00020907 |
Name |
Size of data |
MD5 |
.text |
636416 |
5edb156a782e8846cfe5672fc485ab45 |
.rdata |
195584 |
9da1f73d114fa96ba1df441144761598 |
.data |
18432 |
bdef7afcf849724a02fb0f57b818465f |
.rsrc |
123904 |
d279b81c0cedfdb75d86833e328ded83 |
.reloc |
30720 |
799efcc043ed69d868f5148251d680f5 |