How to remove prototype2.exe
- File Details
- Overview
- Analysis
prototype2.exe
The module prototype2.exe has been detected as Ransom.Wacatac
File Details
MD5: |
3eee83d178aa89be0ad0037feaf16100 |
Size: |
2 MB |
First Published: |
2018-11-19 13:12:49 (5 years ago) |
Latest Published: |
2024-04-16 23:07:10 (2 weeks ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-04-16 23:07:10 (2 weeks ago) |
%profile% |
%sysdrive%\r.g. catalyst |
%sysdrive%\steam\steamapps\common |
%sysdrive% |
%programfiles% |
%sysdrive%\games |
%sysdrive% |
%sysdrive%\prtp |
%sysdrive%\games |
%sysdrive%\steam\steamapps\common |
|
23.1% |
|
|
15.4% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
|
7.7% |
|
Windows 10 |
92.3% |
|
Windows 8.1 |
7.7% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00001eff |
Name |
Size of data |
MD5 |
.text |
5632 |
92225215087e04e4170bd72be42108e0 |
.rdata |
4096 |
42ba6fd5cbf72bfd61136ebca80cdd35 |
.data |
512 |
634129b1d90524f3ebbd29629de0c675 |
.rsrc |
3033088 |
ef8a1e42333e763cd2d438a28f4051de |