How to remove loader.exe
loader.exe
The module loader.exe has been detected as Ransom.Sabsik
File Details
| Product Name: | Wondershare MagicXE |
| Company Name: | WonderShare Limited |
| MD5: | 430a004b31279218ef515045ae189418 |
| Size: | 6 MB |
| First Published: | 2024-09-15 23:01:46 (a year ago) |
| Latest Published: | 2024-11-13 23:01:43 (a year ago) |
| Status: | Ransom.Sabsik (on last analysis) | |
| Analysis Date: | 2024-11-13 23:01:43 (a year ago) |
Common Places:
| %appdata% |
| %appdata% |
Geography:
| 50.0% | ||
| 50.0% |
OS Version:
| Windows 10 | 100.0% |
Analysis
| Subsystem: | Windows GUI |
| PE Type: | pe |
| OS Bitness: | 32 |
| Image Base: | 0x00400000 |
| Entry Address: | 0x0083f241 |
PE Sections:
| Name | Size of data | MD5 |
| .text | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .rdata | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .data | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .xyz0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
| .xyz1 | 1024 | 5fdf107f94241ad88f7d54c2f79a14da |
| .xyz2 | 6397952 | 972f59bf2a359aa67ddee630dc97a4fa |
| .reloc | 1536 | 7666382b951555dea80c98b07a003070 |
| .rsrc | 412672 | 653e4ceac5b8bfe745fcad29d0b726bd |
More information:
Download GridinSoft
Anti-Malware - Removal tool for loader.exe