How to remove o0qaolak.exe
- File Details
- Overview
- Analysis
o0qaolak.exe
The module o0qaolak.exe has been detected as Ransom.Banker
File Details
Product Name: |
|
MD5: |
bc337ef47a81a3cb6b84d4607482549c |
Size: |
13 KB |
First Published: |
2021-03-08 16:33:43 (4 years ago) |
Latest Published: |
2021-03-08 16:33:43 (4 years ago) |
Status: |
Ransom.Banker (on last analysis) |
|
Analysis Date: |
2021-03-08 16:33:43 (4 years ago) |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00004aa6 |
MVID: |
28de4a2a-a8fd-4c11-a61a-47e15b07d48b |
Typelib ID: |
9debd99e-2b66-47b6-a327-36c777e380ef |
Name |
Size of data |
MD5 |
.text |
11264 |
baf37bfb28719938485a8db507eae48a |
.rsrc |
1536 |
abf16558e323444ce6701253024dd157 |
.reloc |
512 |
f2fc35f5cff5d096b0aa694f2ae85f1c |