How to remove win32.exe

win32.exe

The module win32.exe has been detected as Ransom.Wacatac

win32.exe
Product Name:

AS SSD Benchmark

Company Name:

Alex Schepeljanski

MD5: fe66b20ff914e7cdde0f7d43e1905072
Size: 44 KB
First Published: 2022-05-29 23:19:09 (3 years ago)
Latest Published: 2022-05-29 23:20:57 (3 years ago)
Status: Ransom.Wacatac (on last analysis)
Analysis Date: 2022-05-29 23:20:57 (3 years ago)
%sysdrive%\windows.old\users\irina\appdata\local
%sysdrive%\windows.old\users\irina\appdata\roaming
100.0%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 64
Image Base:
Entry Address:

.NET Info:

MVID: 835c3611-5ec8-64a5-d3b8-6e6c1cc0de6d
Typelib ID: c0090589-080f-4a12-afde-4b7458b77403

PE Sections:

Name Size of data MD5
.text 18432 b63ccdb82e2a61bd7857bcfa2250a66e
.rsrc 26112 8cc360ae7897b9050297a5e4bd69e996

More information:

Download GridinSoft Anti-Malware - Removal tool for win32.exe