How to remove o0qaolak.exe
- File Details
- Overview
- Analysis
o0qaolak.exe
The module o0qaolak.exe has been detected as Ransom.Banker
File Details
| Product Name: |
|
| MD5: |
bc337ef47a81a3cb6b84d4607482549c |
| Size: |
13 KB |
| First Published: |
2021-03-08 16:33:43 (4 years ago) |
| Latest Published: |
2021-03-08 16:33:43 (4 years ago) |
| Status: |
Ransom.Banker (on last analysis) |
|
| Analysis Date: |
2021-03-08 16:33:43 (4 years ago) |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x00004aa6 |
| MVID: |
28de4a2a-a8fd-4c11-a61a-47e15b07d48b |
| Typelib ID: |
9debd99e-2b66-47b6-a327-36c777e380ef |
| Name |
Size of data |
MD5 |
| .text |
11264 |
baf37bfb28719938485a8db507eae48a |
| .rsrc |
1536 |
abf16558e323444ce6701253024dd157 |
| .reloc |
512 |
f2fc35f5cff5d096b0aa694f2ae85f1c |