How to remove updater.exe
- File Details
- Overview
- Analysis
updater.exe
The module updater.exe has been detected as Ransom.Wacatac
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f73fae0977dd810aa94f3a87f9063510 |
Size: |
11 MB |
First Published: |
2023-07-26 23:09:52 (2 years ago) |
Latest Published: |
2023-07-26 23:09:52 (2 years ago) |
Status: |
Ransom.Wacatac (on last analysis) |
|
Analysis Date: |
2023-07-26 23:09:52 (2 years ago) |
%sysdrive%\windows.old\users\alial\appdata\roaming\google |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
64 |
Image Base: |
0x0000000140000000 |
Entry Address: |
0x00df0000 |
Name |
Size of data |
MD5 |
|
11108352 |
2d28ad1de5dcb5d4af5d2190da0a39bf |
.rsrc |
2048 |
2e71e006a05ce3c28d6287e2cd32e7fa |
.idata |
512 |
4cc7a89c7afd5e67ffdc3d4f5189852f |
|
512 |
2ef9ee200bb4f4a0119ab3b3905be622 |
hownpurr |
1281536 |
d3537883a3e63b3a916fa3537046a284 |
okxrqmqt |
512 |
c7667e4657dbb3cf9b25f0527aebca48 |
.pdata |
4608 |
cddcadf530ed797265c29b79a3390b0f |