How to remove XLLiveUD.exe
- File Details
- Overview
- Analysis
XLLiveUD.exe
The module XLLiveUD.exe has been detected as Ransom.Wacatac
File Details
| Product Name: |
|
| Company Name: |
|
| MD5: |
58f171ed2dd8530d9e6f59f841933f8a |
| Size: |
4 MB |
| First Published: |
2022-09-07 23:21:49 (3 years ago) |
| Latest Published: |
2024-09-09 23:01:46 (a year ago) |
| Status: |
Ransom.Wacatac (on last analysis) |
|
| Analysis Date: |
2024-09-09 23:01:46 (a year ago) |
Overview
| %programfiles%\thunder network\thunder |
| %programfiles%\thunder network\thunder |
| %temp%\xlliveud |
| %temp%\xlliveud |
| %temp%\xlliveud |
| %temp%\xlliveud |
| %temp%\xlliveud |
| %sysdrive%\thunder |
| %temp%\xlliveud |
| %temp%\xlliveud |
|
29.7% |
|
|
24.3% |
|
|
21.6% |
|
|
16.2% |
|
|
5.4% |
|
|
2.7% |
|
| Windows 10 |
94.6% |
|
| Windows 7 |
5.4% |
|
Analysis
| Subsystem: |
Windows GUI |
| PE Type: |
pe |
| OS Bitness: |
32 |
| Image Base: |
0x00400000 |
| Entry Address: |
0x000b4cb8 |
| Name |
Size of data |
MD5 |
| .text |
915968 |
83edfbc5b3a7a542bd0fef53117300f2 |
| .rdata |
186880 |
fee027cc39ba98bd6d9ffb86f36dbff5 |
| .data |
10240 |
2a2f585f64864ce69dd143d58a20140b |
| .rsrc |
3976192 |
7464eb952f0685b21c75401fc8b92515 |
| .reloc |
46592 |
50ae8df7f6c2310bea0e7521d8af55bd |