How to remove win32.exe
win32.exe
The module win32.exe has been detected as Ransom.Wacatac
File Details
| Product Name: | AS SSD Benchmark |
| Company Name: | Alex Schepeljanski |
| MD5: | fe66b20ff914e7cdde0f7d43e1905072 |
| Size: | 44 KB |
| First Published: | 2022-05-29 23:19:09 (3 years ago) |
| Latest Published: | 2022-05-29 23:20:57 (3 years ago) |
| Status: | Ransom.Wacatac (on last analysis) | |
| Analysis Date: | 2022-05-29 23:20:57 (3 years ago) |
Common Places:
| %sysdrive%\windows.old\users\irina\appdata\local |
| %sysdrive%\windows.old\users\irina\appdata\roaming |
Geography:
| 100.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 64 |
| Image Base: | |
| Entry Address: |
.NET Info:
| MVID: | 835c3611-5ec8-64a5-d3b8-6e6c1cc0de6d |
| Typelib ID: | c0090589-080f-4a12-afde-4b7458b77403 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 18432 | b63ccdb82e2a61bd7857bcfa2250a66e |
| .rsrc | 26112 | 8cc360ae7897b9050297a5e4bd69e996 |
More information:
Download GridinSoft
Anti-Malware - Removal tool for win32.exe