How to remove socketheciserver.exe
- File Details
- Overview
- Analysis
socketheciserver.exe
The module socketheciserver.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f71b0805e35368af5c739b769f7a1570 |
Size: |
1 MB |
First Published: |
2024-04-22 23:02:36 (a year ago) |
Latest Published: |
2024-04-22 23:02:36 (a year ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2024-04-22 23:02:36 (a year ago) |
%system%\driverstore\filerepository\iclsclient.inf_amd64_76523213b78d9046 |
Analysis
Subsystem: |
Windows CUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00057610 |
Name |
Size of data |
MD5 |
.text |
551424 |
87a71aa44c14868b227b068c7a2cefb5 |
.rdata |
116224 |
9f40062543a3ad473b4ac394cc6d1a65 |
.data |
53760 |
b8065fa187d3a639624b748f82b2ad12 |
.pdata |
38912 |
c732471c4405de522cc0b72eae23fa23 |
.rsrc |
2048 |
976f16360272660c0e24bba32e25d989 |
.reloc |
585728 |
4a67284c5fcc70e0f939ef4b05f288bb |