How to remove updater.exe
- File Details
- Overview
- Analysis
updater.exe
The module updater.exe has been detected as Ransom.Wacatac
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
f73fae0977dd810aa94f3a87f9063510 |
| Size: |
11 MB |
| First Published: |
2023-07-26 23:09:52 (2 years ago) |
| Latest Published: |
2023-07-26 23:09:52 (2 years ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2023-07-26 23:09:52 (2 years ago) |
| %sysdrive%\windows.old\users\alial\appdata\roaming\google |
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
64 |
| Image Base: |
0x0000000140000000 |
| Entry Address: |
0x00df0000 |
| Name |
Size of data |
MD5 |
| |
11108352 |
2d28ad1de5dcb5d4af5d2190da0a39bf |
| .rsrc |
2048 |
2e71e006a05ce3c28d6287e2cd32e7fa |
| .idata |
512 |
4cc7a89c7afd5e67ffdc3d4f5189852f |
| |
512 |
2ef9ee200bb4f4a0119ab3b3905be622 |
| hownpurr |
1281536 |
d3537883a3e63b3a916fa3537046a284 |
| okxrqmqt |
512 |
c7667e4657dbb3cf9b25f0527aebca48 |
| .pdata |
4608 |
cddcadf530ed797265c29b79a3390b0f |