How to remove stormphp32.exe

stormphp32.exe

The module stormphp32.exe has been detected as Ransom.Wacatac

stormphp32.exe
Product Name:

ImBatch ImageMonitor

MD5: c4e957d16aa62a944adf0b233e681883
Size: 2 MB
First Published: 2024-04-03 23:06:21 (a year ago)
Latest Published: 2024-04-03 23:06:21 (a year ago)
Status: Ransom.Wacatac (on last analysis)
Analysis Date: 2024-04-03 23:06:21 (a year ago)
%localappdata%
Ukraine 100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000b91cc

PE Sections:

Name Size of data MD5
.text 778240 12bdbf565a42f8a927fbe0a4383d355a
.rdata 12288 9f66e4af777411ee1a3ce2dbdbd425bb
.data 12288 d278f694c930f7d8943588bf5691151a
.rsrc 393216 622e05d3260369d4918866a3554bc895
.SHORT8 986457 7f53db3cd6ff2ba56bebff12ce592bd1

More information:

Download GridinSoft Anti-Malware - Removal tool for stormphp32.exe
­