How to remove socketheciserver.exe
- File Details
- Overview
- Analysis
socketheciserver.exe
The module socketheciserver.exe has been detected as Ransom.Wacatac
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
f71b0805e35368af5c739b769f7a1570 |
| Size: |
1 MB |
| First Published: |
2024-04-22 23:02:36 (2 years ago) |
| Latest Published: |
2024-04-22 23:02:36 (2 years ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2024-04-22 23:02:36 (2 years ago) |
| %system%\driverstore\filerepository\iclsclient.inf_amd64_76523213b78d9046 |
Analysis
| Subsystem: |
Windows CUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00057610 |
| Name |
Size of data |
MD5 |
| .text |
551424 |
87a71aa44c14868b227b068c7a2cefb5 |
| .rdata |
116224 |
9f40062543a3ad473b4ac394cc6d1a65 |
| .data |
53760 |
b8065fa187d3a639624b748f82b2ad12 |
| .pdata |
38912 |
c732471c4405de522cc0b72eae23fa23 |
| .rsrc |
2048 |
976f16360272660c0e24bba32e25d989 |
| .reloc |
585728 |
4a67284c5fcc70e0f939ef4b05f288bb |