How to remove hello.exe
hello.exe
The module hello.exe has been detected as Ransom.Wacatac
File Details
Product Name: | OrionEdge Advanced Suite |
Company Name: | OrionEdge Innovations Inc. |
MD5: | 2eb71684c81d24144953fe0f6f5b392c |
Size: | 1 MB |
First Published: | 2024-07-16 23:01:57 (5 months ago) |
Latest Published: | 2024-07-16 23:01:58 (5 months ago) |
Status: | Ransom.Wacatac (on last analysis) | |
Analysis Date: | 2024-07-16 23:01:58 (5 months ago) |
Common Places:
%temp% |
%localappdata%\microsoft\windows\temporary internet files\content.ie5 |
Geography:
100.0% |
OS Version:
Windows 7 | 100.0% |
Analysis
Subsystem: | Windows CUI |
PE Type: | pe |
OS Bitness: | 32 |
Image Base: | 0x00400000 |
Entry Address: | 0x0011180e |
.NET Info:
MVID: | 25853d1f-0052-4dd4-8258-ca679bf3c917 |
PE Sections:
Name | Size of data | MD5 |
.text | 1112576 | 5c28cc3367ba27aa1220a082e688f285 |
.rsrc | 2048 | a188661a857fe40d0a1989edf895e9a2 |
.reloc | 512 | ff64e299726b9d8f07976d55d4f560f1 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for hello.exe